Quantum-safe multi-server password-based authenticated key exchange protocol

被引:0
|
作者
Chen, Lin [1 ]
Qu, Tongzhou [1 ]
Yin, Anqi [1 ]
机构
[1] Informat Engn Univ, Inst Elect Technol, Shangcheng East Rd, Zhengzhou 450004, Peoples R China
关键词
Password-authenticated key exchange; Smooth projective hash function; Multi-server; Quantum-safe; EFFICIENT; SECURE; FRAMEWORK;
D O I
10.1007/s11042-023-17984-1
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Password-based authentication is one of the most prevailing access control mechanism. Typical password-authenticated key exchange (PAKE) protocols are single-server settings and are therefore vulnerable to server compromise attack. To defend against such attack, multi-server PAKE schemes have been advanced, but most of which are built on non-quantum-secure hardness assumptions. Lattice-based cryptosystems are regarded as the most promising one for post-quantum eara by NIST, while the known multi-server password-based authentication solution over lattices achieves merely key transport and is public key infrastructure (PKI)-based, resulting in low efficiency and poor deployability. In this work, we resort to distributed smooth projective hash function (SPHF) to bridge the gap between multi-server PAKE protocol and quantum-security. We first design an exact SPHF and derive the first distributed SPHF over lattices by leveraging the additive homomorphic property of the strong learning with errors (LWE) problem. In particular, the relevant parameters of the public key encryption (PKE) scheme it predicates on are identified, thus eliminating the influence of incomplete lattice homomorphism on the correctness of our SPHFs. Pertinent lattice-based multi-server PAKE protocols are further proposed on both transparent and non-transparent transmission modes by integrating our distributed SPHF into the multi-server framework of Raimondo and Gennaro (EUROCRYPT'03). Our PAKE constructions are able to resist both quantum and sever compromise attacks as well as avoid the expensive cryptographic primitives, including non-interactive zero knowledge (NIZK) proofs, signature/verification, secret sharing and fully homomorphic encryption. Experimental results demonstrate that our SPHFs and PAKE protocols offer better efficiency.
引用
收藏
页码:65011 / 65038
页数:28
相关论文
共 50 条
  • [41] An Efficient Multi-server Password Authenticated Key Agreement Scheme Revisited
    Lim, Meng-Hui
    Lee, Sanggon
    Lee, Hoonjae
    THIRD 2008 INTERNATIONAL CONFERENCE ON CONVERGENCE AND HYBRID INFORMATION TECHNOLOGY, VOL 2, PROCEEDINGS, 2008, : 396 - +
  • [42] A Three-Party Password-based Authenticated Key Exchange Protocol for Wireless Communications
    Lu, Yanrong
    Li, Lixiang
    Peng, Haipeng
    Yang, Yixian
    INFORMATION TECHNOLOGY AND CONTROL, 2015, 44 (04): : 404 - 409
  • [43] Threshold password-based authenticated key exchange using matrix
    Park, Chanil
    Lee, Soojin
    Yoon, Hyunsoo
    3RD INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATIONS AND CONTROL TECHNOLOGIES, VOL 3, PROCEEDINGS, 2005, : 39 - 43
  • [44] Scalable protocol for cross-domain group password-based authenticated key exchange
    Cong Guo
    Zijian Zhang
    Liehuang Zhu
    Yu-an Tan
    Zhen Yang
    Frontiers of Computer Science, 2015, 9 : 157 - 169
  • [45] Scalable protocol for cross-domain group password-based authenticated key exchange
    Cong GUO
    Zijian ZHANG
    Liehuang ZHU
    Yu-an TAN
    Zhen YANG
    Frontiers of Computer Science, 2015, 9 (01) : 157 - 169
  • [46] Proof of forward security for password-based authenticated key exchange
    Wu, Shuhua
    Zhu, Yuefei
    International Journal of Network Security, 2008, 7 (03) : 335 - 341
  • [47] Countermeasure on Password-Based Authentication Scheme for Multi-server Environments
    Lee, Youngsook
    Kim, Jiye
    Won, Dongho
    MULTIMEDIA AND UBIQUITOUS ENGINEERING, 2014, 308 : 459 - 466
  • [48] Cryptanalysis and Improvement of a Password-Based Authenticated Three-Party Key Exchange Protocol
    Lee, Youngsook
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2014, 8 (04): : 151 - 160
  • [49] Scalable protocol for cross-domain group password-based authenticated key exchange
    Guo, Cong
    Zhang, Zijian
    Zhu, Liehuang
    Tan, Yu-an
    Yang, Zhen
    FRONTIERS OF COMPUTER SCIENCE, 2015, 9 (01) : 157 - 169
  • [50] Three-Party Password-Based Authenticated Key Exchange Protocol Based on Bilinear Pairings
    Wei, Fushan
    Ma, Chuangui
    Cheng, Qingfeng
    INFORMATION COMPUTING AND APPLICATIONS, 2010, 6377 : 135 - 142