An Efficient Password-Based Authenticated Key Exchange Protocol with Provable Security for Mobile Client-Client Networks

被引:18
|
作者
Heydari, Mohammad [2 ]
Sadough, S. Mohammad Sajad [2 ]
Farash, Mohammad Sabzinejad [1 ]
Chaudhry, Shehzad Ashraf [3 ]
Mahmood, Khalid [3 ]
机构
[1] Kharazmi Univ, Fac Math Sci & Comp, Tehran, Iran
[2] Shahid Beheshti Univ, Dept Elect Engn, Tehran, Iran
[3] Int Islamic Univ, Dept Comp Sci & Software Engn, Islamabad, Pakistan
关键词
Authenticated key exchange protocol; Dictionary attack; Impersonation attack; Random oracle model; Provable security; CRYPTANALYSIS; AGREEMENT; MODEL;
D O I
10.1007/s11277-015-3123-6
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Three party password based authenticated key exchange protocol can sanction couple of clients to institute a protected session key through a server above an insecure communication link. Youn et al. (Telecommun Syst 52(2):1367-1376, 2013) proposed three-party efficient and robust authenticated key exchange scheme that incurs three rounds. They assert that their scheme is invincible against customary attacks. Moreover, they claimed the scheme is lightweight due to low communication, computation costs and incorporating authentication in three rounds. However, comprehensive analysis in this paper reveals that Youn et al.'s scheme is susceptible to impersonation attack. To overcome the security feebleness, this paper introduces a modest scheme which not only maintains round efficiency, communication and computation costs but it also offer comprehensive security to repel popular security attacks. The security of the proposed scheme is verified through random oracle model.
引用
收藏
页码:337 / 356
页数:20
相关论文
共 50 条
  • [1] An Efficient Password-Based Authenticated Key Exchange Protocol with Provable Security for Mobile Client–Client Networks
    Mohammad Heydari
    S. Mohammad Sajad Sadough
    Mohammad Sabzinejad Farash
    Shehzad Ashraf Chaudhry
    Khalid Mahmood
    [J]. Wireless Personal Communications, 2016, 88 : 337 - 356
  • [2] An efficient client-client password-based authentication scheme with provable security
    Farash, Mohammad Sabzinejad
    Attari, Mahmoud Ahmadian
    [J]. JOURNAL OF SUPERCOMPUTING, 2014, 70 (02): : 1002 - 1022
  • [3] An efficient client–client password-based authentication scheme with provable security
    Mohammad Sabzinejad Farash
    Mahmoud Ahmadian Attari
    [J]. The Journal of Supercomputing, 2014, 70 : 1002 - 1022
  • [4] Efficient and provably secure client-to-client password-based key exchange protocol
    Byun, JW
    Lee, DH
    Lim, JI
    [J]. FRONTIERS OF WWW RESEARCH AND DEVELOPMENT - APWEB 2006, PROCEEDINGS, 2006, 3841 : 830 - 836
  • [5] Efficient Client-to-Client Password Authenticated Key Exchange
    Yang, Yanjiang
    Bao, Feng
    Deng, Robert H.
    [J]. EUC 2008: PROCEEDINGS OF THE 5TH INTERNATIONAL CONFERENCE ON EMBEDDED AND UBIQUITOUS COMPUTING, VOL 2, WORKSHOPS, 2008, : 202 - +
  • [6] Efficient and Provably Secure Generic Construction of Client-to-Client Password-Based Key Exchange Protocol
    Li, Zhoujun
    Guo, Hua
    Zhang, Xiyong
    [J]. ELECTRONIC NOTES IN THEORETICAL COMPUTER SCIENCE, 2008, 212 : 257 - 268
  • [7] EPA: An efficient password-based protocol for authenticated key exchange
    Hwang, YH
    Yum, DH
    Lee, PJ
    [J]. INFORMATION SECURITY AND PRIVACY, PROCEEDINGS, 2003, 2727 : 452 - 463
  • [8] Password-Based Authenticated Key Exchange from Lattices for Client/Server Model
    Jheng, Yi-Siou
    Tso, Raylin
    Chen, Chien-Ming
    Wu, Mu-En
    [J]. ADVANCES IN COMPUTER SCIENCE AND UBIQUITOUS COMPUTING, 2018, 474 : 315 - 319
  • [9] Simple and Efficient Password-Based Authenticated Key Exchange Protocol
    王立斌
    潘嘉昕
    马昌社
    [J]. Journal of Shanghai Jiaotong University(Science), 2011, 16 (04) : 459 - 465
  • [10] Improved client-to-client password-authenticated key exchange protocol
    Gang, Yao
    Dengguo, Feng
    Xiaoxi, Han
    [J]. ARES 2007: SECOND INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, PROCEEDINGS, 2007, : 564 - +