Provably Secure Gateway-Oriented Password-Based Authenticated Key Exchange Protocol Resistant to Password Guessing Attacks

被引:0
|
作者
Chien, Hung-Yu [1 ]
Wu, Tzong-Chen [2 ]
Yeh, Ming-Kuei [3 ]
机构
[1] Natl Chi Nan Univ, Dept Informat Management, Nantou 545, Taiwan
[2] Natl Taiwan Univ Sci & Technol, Dept Informat Management, Taipei 106, Taiwan
[3] Nanya Inst Technol, Dept Informat Management, Chungli 320, Taiwan
关键词
security; authentication; gateway; password guessing attack; semantic security; IMPROVEMENT; SCHEME;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A Gateway-oriented Password-based Authenticated Key Exchange (GPAKE) scheme allows a client to establish an authenticated session key with a gateway via the help of an authentication server, where the client has pre-shared a password with the server. The desirable security properties of a GPAKE include session key semantic security, key privacy against servers, and password guessing attacks resistance. Abdalla et al.'s scheme (Asiacrypt 2005) [1] proposed the first GPAKE scheme, and then Abdalla et al. [13] and Byun et al.'s [2] had respectively proposed their improvements to enhance the security. Unfortunately, we find that all the improved schemes fail to commit the security requirements. In this paper, we point out security weaknesses of the improved scheme. To enhance the security, we propose a new GPAKE scheme, and prove its security in an enhanced model.
引用
收藏
页码:249 / 265
页数:17
相关论文
共 50 条
  • [1] An Optimized Gateway-Oriented Password-Based Authenticated Key Exchange Protocol
    Yoon, Eun-Jun
    Yoo, Kee-Young
    [J]. IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 2010, E93A (04) : 850 - 853
  • [2] Analysis and Enhancement of an Optimized Gateway-Oriented Password-Based Authenticated Key Exchange Protocol
    Wei, Fushan
    Zhang, Zhenfeng
    Ma, Chuangui
    [J]. IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 2013, E96A (09) : 1864 - 1871
  • [3] Cryptanalysis and Enhancement of Modified Gateway-Oriented Password-Based Authenticated Key Exchange Protocol
    Shim, Kyung-Ah
    [J]. IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 2008, E91A (12) : 3837 - 3839
  • [4] A provably secure and efficient two-party password-based explicit authenticated key exchange protocol resistance to password guessing attacks
    Farash, Mohammad Sabzinejad
    Islam, S. K. Hafizul
    Obaidat, Mohammad S.
    [J]. CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2015, 27 (17): : 4897 - 4913
  • [5] Security analysis and improvement of a gateway-oriented password-based authenticated key exchange protocol
    Byun, Jin Wook
    Lee, Dong Hoon
    Lim, Jong In
    [J]. IEEE COMMUNICATIONS LETTERS, 2006, 10 (09) : 683 - 685
  • [6] Anonymous gateway-oriented password-based authenticated key exchange based on RSA
    Wei, Fushan
    Ma, Chuangui
    Cheng, Qingfeng
    [J]. EURASIP JOURNAL ON WIRELESS COMMUNICATIONS AND NETWORKING, 2011,
  • [7] Anonymous gateway-oriented password-based authenticated key exchange based on RSA
    Fushan Wei
    Chuangui Ma
    Qingfeng Cheng
    [J]. EURASIP Journal on Wireless Communications and Networking, 2011
  • [8] Threshold Password-Based Authenticated Group Key Exchange in Gateway-Oriented Setting
    Li, Hui
    Wu, Chuan-Kun
    Wei, Lingbo
    [J]. INFORMATION SECURITY PRACTICE AND EXPERIENCE, PROCEEDINGS, 2010, 6047 : 324 - +
  • [9] Gateway-oriented password-authenticated key exchange protocol in the standard model
    Wei, Fushan
    Zhang, Zhenfeng
    Ma, Chuangui
    [J]. JOURNAL OF SYSTEMS AND SOFTWARE, 2012, 85 (03) : 760 - 768
  • [10] Provably secure three-party password-based authenticated key exchange protocol
    Zhao, Jianjie
    Gu, Dawu
    [J]. INFORMATION SCIENCES, 2012, 184 (01) : 310 - 323