Partitioned Group Password-Based Authenticated Key Exchange

被引:1
|
作者
Fiore, Dario [1 ]
Gonzalez Vasco, Maria Isabel [2 ]
Soriente, Claudio [3 ]
机构
[1] IMDEA Software Inst, Madrid, Spain
[2] Univ Rey Juan Carlos, MACIMTE, Madrid, Spain
[3] Telefon Res, Barcelona, Spain
来源
COMPUTER JOURNAL | 2017年 / 60卷 / 12期
关键词
password authentication; group key exchange; security models; SECRET HANDSHAKES; SECURE; ESTABLISHMENT;
D O I
10.1093/comjnl/bxx078
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Group Password-Based Authenticated Key Exchange (GPAKE) allows a group of users to establish a secret key, as long as all of them share the same password. However, in existing GPAKE protocols as soon as one user runs the protocol with a non-matching password, all the others abort and no key is established. In this paper we seek for a more flexible, yet secure, GPAKE and put forward the notion of partitioned GPAKE. Partitioned GPAKE tolerates users that run the protocol on different passwords. Through a protocol run, any subgroup of users that indeed share a password, establish a session key, factoring out the 'noise' of inputs by users holding different passwords. At the same time any two keys, each established by a different subgroup of users, are pair-wise independent if the corresponding subgroups hold different passwords. We also introduce the notion of password-privacy for partitioned GPAKE, which is a kind of affiliation hiding property, ensuring that an adversary should not be able to tell whether any given set of users share a password. Finally, we propose an efficient instantiation of partitioned GPAKE building on an unforgeable symmetric encryption scheme and a PAKE by Bellare et al. Our proposal is proven secure in the random oracle/ideal cipher model, and requires only two communication rounds.
引用
收藏
页码:1912 / 1922
页数:11
相关论文
共 50 条
  • [1] Partitioned group password-based authenticated key exchange
    [J]. Vasco, María Isabel González (mariaisabel.vasco@urjc.es), 1912, Oxford University Press (60):
  • [2] Partitioned Group Password-based Authenticated Key Exchange with Privacy Protection
    Zhu, Hongfeng
    Zhang, Yuanle
    Wang, Xueying
    Wang, Liwei
    [J]. International Journal of Network Security, 2021, 23 (01) : 116 - 125
  • [3] Password-Based Authenticated Key Exchange
    Pointcheval, David
    [J]. PUBLIC KEY CRYPTOGRAPHY - PKC 2012, 2012, 7293 : 390 - 397
  • [4] Efficient password-based authenticated group key exchange protocol
    School of Computer Science and Engineering, University of Electronic Science and Technology of China, Chengdu 610054, China
    不详
    [J]. Dianzi Keji Diaxue Xuebao, 2009, 3 (393-396+414):
  • [5] Efficient Hybrid Password-Based Authenticated Group Key Exchange
    Wu, Shuhua
    Zhu, Yuefei
    [J]. ADVANCES IN DATA AND WEB MANAGEMENT, PROCEEDINGS, 2009, 5446 : 562 - 567
  • [6] Password-Based Authenticated Key Exchange: An Overview
    Abdalla, Michel
    [J]. PROVABLE SECURITY, PROVSEC 2014, 2014, 8782 : 1 - 9
  • [7] A framework for password-based authenticated key exchange
    Gennaro, Rosario
    Lindell, Yehuda
    [J]. ACM Transactions on Information and System Security, 2006, 9 (02) : 181 - 234
  • [8] Anonymous password-based authenticated key exchange
    Viet, DQ
    Yamamura, A
    Tanaka, H
    [J]. PROGRESS IN CRYPTOLOGY - INDOCRYPT 2005, PROCEEDINGS, 2005, 3797 : 244 - 257
  • [9] A framework for password-based authenticated key exchange
    Gennaro, R
    Lindell, Y
    [J]. ADVANCES IN CRYPTOLOGY-EUROCRYPT 2003, 2003, 2656 : 524 - 543
  • [10] IPAKE: Isomorphisms for password-based authenticated key exchange
    Catalano, D
    Pointcheval, D
    Pornin, T
    [J]. ADVANCES IN CRYPTOLOGY - CRYPTO 2004, PROCEEDINGS, 2004, 3152 : 477 - 493