An Efficient and Provably Secure Cross-Realm Client-to-Client Password-Authenticated Key Agreement Protocol with Smart Cards

被引:0
|
作者
Jin, Wenting [1 ]
Xu, Jing [2 ]
机构
[1] Grad Univ Chinese Acad Sci, State Key Lab Informat Secur, Beijing, Peoples R China
[2] Chinese Acad Sci, Inst Software, State Key Lab Informat Secu, Beijing, Peoples R China
关键词
Passwold-authenticated key agreement; Cross-realm; Client-to-client; Smart cards; Provable security; EXCHANGE; CRYPTANALYSIS; SCHEME;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Cross-realm client-to-client password-authenticated key agreement (C2C-PAKA) protocols provide an authenticated key exchange between two clients of different realms, who only share their passwords with their own servers. Recently, several such cross-realm C2C-PAKA protocols have been suggested in the private-key (symmetric) setting, but all of these protocols are found to be vulnerable to password-compromise impersonation attacks. In this paper, we propose our innovative C2C- PAKA-SC protocol in which smart cards are first utilized in the cross-realm setting so that it can resist all types of common attacks including password-compromise impersonation attacks and provide improved efficiency. Moveover, we modify the original formal security model to adapt our proposed protocol and present a corresponding security proof.
引用
收藏
页码:299 / +
页数:4
相关论文
共 50 条
  • [1] Cryptanalysis of a Provably Secure Cross-Realm Client-to-Client Password-Authenticated Key Agreement Protocol of CANS '09
    Yau, Wei-Chuen
    Phan, Raphael C. -W.
    Goi, Bok-Min
    Heng, Swee-Huay
    CRYPTOLOGY AND NETWORK SECURITY, 2011, 7092 : 172 - +
  • [2] Efficient and Secure Cross-Realm Client-to-Client Password-Authenticated Key Exchange
    Chuang, Po-Jen
    Liao, Yi-Ping
    2012 IEEE 26TH INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS (AINA), 2012, : 701 - 708
  • [3] Improved cross-realm client-to-client password-authenticated key exchange protocol
    Cao, Tian-Jie
    Yang, Jun-Han
    Zhongguo Kuangye Daxue Xuebao/Journal of China University of Mining and Technology, 2010, 39 (03): : 443 - 448
  • [4] A New Client-to-Client Password-Authenticated Key Agreement Protocol
    Feng, Deng-Guo
    Xu, Jing
    CODING AND CRYPTOLOGY, PROCEEDINGS, 2009, 5557 : 63 - 76
  • [5] Client-to-client password-based authenticated key establishment in a cross-realm setting
    Department of Networks Engineering, Zhengzhou Information Science Technology Institute, Zhengzhou 450002, China
    J. Netw., 2009, 7 (649-656):
  • [7] Improved client-to-client password-authenticated key exchange protocol
    Gang, Yao
    Dengguo, Feng
    Xiaoxi, Han
    ARES 2007: SECOND INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, PROCEEDINGS, 2007, : 564 - +
  • [8] Cross-realm client-to-client password-based authenticated key agreement protocol for mobile devices on elliptic curve cryptosystem
    Wen F.
    Li X.
    Cui S.
    Journal of Convergence Information Technology, 2011, 6 (05) : 23 - 31
  • [9] EC2C-PAKA: An efficient client-to-client password-authenticated key agreement
    Byun, Jin Wook
    Lee, Dong Hoon
    Lim, Jong In
    INFORMATION SCIENCES, 2007, 177 (19) : 3995 - 4013
  • [10] Efficient and provably secure client-to-client password-based key exchange protocol
    Byun, JW
    Lee, DH
    Lim, JI
    FRONTIERS OF WWW RESEARCH AND DEVELOPMENT - APWEB 2006, PROCEEDINGS, 2006, 3841 : 830 - 836