Secure cross-realm client-to-client password-based authenticated key exchange against undetectable on-line dictionary attacks

被引:0
|
作者
Yoneyama, Kazuki [1 ]
Ota, Haruki [2 ]
Ohta, Kazuo [1 ]
机构
[1] Univ Electrocommun, Chofu, Tokyo, Japan
[2] KDDI R&D Lab Inc, Yokosuka, Kanagawa, Japan
关键词
authenticated key exchange; different password; C2C-PAKE; cross-realm setting; undetectable on-line dictionary attacks;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The cross-realm client-to-client password-based authenticated key exchange (C2C-PAKE) is protocol which two clients in two different realms with different passwords exchange a session key through their corresponding servers. Recently, a provably secure cross-realm C2C-PAKE scheme with the optimal number of rounds for a client is pointed out that the scheme is insecure against an undetectable on-line dictionary attack and an unknown-key share attack. In this paper, we propose a new cross-realm C2C-PAKE scheme with the optimal number of rounds for a client, which has resistances to previously considered attacks which should be prevented, including undetectable on-line dictionary attacks and unknown-key share attacks. Moreover, our scheme assumes no pre-established secure channels between different realms, but just basic setups of ID-based systems.
引用
收藏
页码:257 / +
页数:4
相关论文
共 50 条
  • [1] Client-to-client password-based authenticated key establishment in a cross-realm setting
    Department of Networks Engineering, Zhengzhou Information Science Technology Institute, Zhengzhou 450002, China
    [J]. J. Netw, 2009, 7 (649-656):
  • [2] Efficient and Secure Cross-Realm Client-to-Client Password-Authenticated Key Exchange
    Chuang, Po-Jen
    Liao, Yi-Ping
    [J]. 2012 IEEE 26TH INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS (AINA), 2012, : 701 - 708
  • [4] Improved cross-realm client-to-client password-authenticated key exchange protocol
    Cao, Tian-Jie
    Yang, Jun-Han
    [J]. Zhongguo Kuangye Daxue Xuebao/Journal of China University of Mining and Technology, 2010, 39 (03): : 443 - 448
  • [5] Cross-realm client-to-client password-based authenticated key agreement protocol for mobile devices on elliptic curve cryptosystem
    Wen, Fengtong
    Li, Xuelei
    Cui, Shenjun
    [J]. Journal of Convergence Information Technology, 2011, 6 (05) : 23 - 31
  • [6] Cryptanalysis of a Provably Secure Cross-Realm Client-to-Client Password-Authenticated Key Agreement Protocol of CANS '09
    Yau, Wei-Chuen
    Phan, Raphael C. -W.
    Goi, Bok-Min
    Heng, Swee-Huay
    [J]. CRYPTOLOGY AND NETWORK SECURITY, 2011, 7092 : 172 - +
  • [7] An Efficient and Provably Secure Cross-Realm Client-to-Client Password-Authenticated Key Agreement Protocol with Smart Cards
    Jin, Wenting
    Xu, Jing
    [J]. CRYPTOLOGY AND NETWORK SECURITY, PROCEEDINGS, 2009, 5888 : 299 - +
  • [8] Gateway Threshold Password-based Authenticated Key Exchange Secure against Undetectable On-line Dictionary Attack
    Kobayashi, Yukou
    Yanai, Naoto
    Yoneyama, Kazuki
    Nishide, Takashi
    Hanaoka, Goichiro
    Kim, Kwangjo
    Okamoto, Eiji
    [J]. 2015 12TH INTERNATIONAL JOINT CONFERENCE ON E-BUSINESS AND TELECOMMUNICATIONS (ICETE), VOL 4, 2015, : 39 - 52
  • [9] Efficient and provably secure client-to-client password-based key exchange protocol
    Byun, JW
    Lee, DH
    Lim, JI
    [J]. FRONTIERS OF WWW RESEARCH AND DEVELOPMENT - APWEB 2006, PROCEEDINGS, 2006, 3841 : 830 - 836
  • [10] Provably Secure Gateway Threshold Password-Based Authenticated Key Exchange Secure against Undetectable On-Line Dictionary Attack
    Kobayashi, Yukou
    Yanai, Naoto
    Yoneyama, Kazuki
    Nishide, Takashi
    Hanaoka, Goichiro
    Kim, Kwangjo
    Okamoto, Eiji
    [J]. IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 2017, E100A (12): : 2991 - 3006