Partitioned Group Password-Based Authenticated Key Exchange

被引:1
|
作者
Fiore, Dario [1 ]
Gonzalez Vasco, Maria Isabel [2 ]
Soriente, Claudio [3 ]
机构
[1] IMDEA Software Inst, Madrid, Spain
[2] Univ Rey Juan Carlos, MACIMTE, Madrid, Spain
[3] Telefon Res, Barcelona, Spain
来源
COMPUTER JOURNAL | 2017年 / 60卷 / 12期
关键词
password authentication; group key exchange; security models; SECRET HANDSHAKES; SECURE; ESTABLISHMENT;
D O I
10.1093/comjnl/bxx078
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Group Password-Based Authenticated Key Exchange (GPAKE) allows a group of users to establish a secret key, as long as all of them share the same password. However, in existing GPAKE protocols as soon as one user runs the protocol with a non-matching password, all the others abort and no key is established. In this paper we seek for a more flexible, yet secure, GPAKE and put forward the notion of partitioned GPAKE. Partitioned GPAKE tolerates users that run the protocol on different passwords. Through a protocol run, any subgroup of users that indeed share a password, establish a session key, factoring out the 'noise' of inputs by users holding different passwords. At the same time any two keys, each established by a different subgroup of users, are pair-wise independent if the corresponding subgroups hold different passwords. We also introduce the notion of password-privacy for partitioned GPAKE, which is a kind of affiliation hiding property, ensuring that an adversary should not be able to tell whether any given set of users share a password. Finally, we propose an efficient instantiation of partitioned GPAKE building on an unforgeable symmetric encryption scheme and a PAKE by Bellare et al. Our proposal is proven secure in the random oracle/ideal cipher model, and requires only two communication rounds.
引用
收藏
页码:1912 / 1922
页数:11
相关论文
共 50 条
  • [21] Efficient password-based authenticated key exchange from lattices
    Fan, Lei
    Ding, Yi
    [J]. International Journal of Advancements in Computing Technology, 2012, 4 (22) : 321 - 328
  • [22] Leakage-Resilient Password-Based Authenticated Key Exchange
    Ruan, Ou
    Zhang, Mingwu
    Chen, Jing
    [J]. ALGORITHMS AND ARCHITECTURES FOR PARALLEL PROCESSING, ICA3PP 2017, 2017, 10393 : 285 - 296
  • [23] Threshold Password-Based Authenticated Group Key Exchange in Gateway-Oriented Setting
    Li, Hui
    Wu, Chuan-Kun
    Wei, Lingbo
    [J]. INFORMATION SECURITY PRACTICE AND EXPERIENCE, PROCEEDINGS, 2010, 6047 : 324 - +
  • [24] Simple and efficient password-based authenticated key exchange protocol
    Wang L.-B.
    Pan J.-X.
    Ma C.-S.
    [J]. Journal of Shanghai Jiaotong University (Science), 2011, 16 (4) : 459 - 465
  • [25] Efficient password-based group key exchange
    Lee, SM
    Hwang, JY
    Lee, DH
    [J]. TRUST AND PRIVACY IN DIGITAL BUSINESS, PROCEEDINGS, 2004, 3184 : 191 - 199
  • [26] Efficient and secure password-based authenticated key exchange protocol
    Wu, Shuhua
    Zhu, Yuefei
    [J]. 2006 INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND SECURITY, PTS 1 AND 2, PROCEEDINGS, 2006, : 1269 - 1272
  • [27] A New Framework for Efficient Password-Based Authenticated Key Exchange
    Groce, Adam
    Katz, Jonathan
    [J]. PROCEEDINGS OF THE 17TH ACM CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (CCS'10), 2010, : 516 - 525
  • [28] Scalable protocol for cross-domain group password-based authenticated key exchange
    Cong Guo
    Zijian Zhang
    Liehuang Zhu
    Yu-an Tan
    Zhen Yang
    [J]. Frontiers of Computer Science, 2015, 9 : 157 - 169
  • [29] Round-Optimal Password-Based Authenticated Key Exchange
    Jonathan Katz
    Vinod Vaikuntanathan
    [J]. Journal of Cryptology, 2013, 26 : 714 - 743
  • [30] Round-Optimal Password-Based Authenticated Key Exchange
    Katz, Jonathan
    Vaikuntanathan, Vinod
    [J]. THEORY OF CRYPTOGRAPHY, 2011, 6597 : 293 - +