Identity-based password-authenticated key exchange for client/server model

Uloženo v:
Podrobná bibliografie
Název: Identity-based password-authenticated key exchange for client/server model
Autoři: Yi, X., Tso, Ray-Lin, Okamoto, E., 左瑞麟
Přispěvatelé: 資科系
Rok vydání: 2012
Sbírka: National Chengchi University Institutional Repository (NCCUIR)
Témata: Client needs, Client/server models, Cryptographic key, Diffie-Hellman problem, Formal model, ID-based, Identity Based Encryption, Identity-based, PAKE, Password-authenticated key exchange, Private key, Private key generators, Provable security, Secure communications, Without random oracles, Cryptography, Knowledge management, Authentication
Popis: Password-Authenticated Key Exchange for Client/Server model (PAKE-CS) is where a client and a server, based only on their knowledge of a password, establish a cryptographic key for secure communication. In this paper, we propose a PAKE-CS protocol on the basis of identity-based encryption, where the client needs to remember a password only while the server keeps the password in addition to a private key related to his identity, where the private key is generated by multiple private key generators. Our protocol takes advantage of the features of client/server model and is more efficient than other PAKE-CS protocols in terms that it achieves explicit authentication with two-round communications only. In order to analyze the security of our protocol, we construct an ID-based formal model of security for PAKE-CS by embedding ID-based model into PAKE model. If the underlying identity-based encryption scheme has provable security without random oracle, we can provide a rigorous proof of security for our protocol without random oracles.
Druh dokumentu: conference object
Popis souboru: 176 bytes; text/html
Jazyk: unknown
Relation: SECRYPT 2012 - Proceedings of the International Conference on Security and Cryptography; https://nccur.lib.nccu.edu.tw//handle/140.119/74497; https://nccur.lib.nccu.edu.tw/bitstream/140.119/74497/1/index.html
Dostupnost: https://nccur.lib.nccu.edu.tw//handle/140.119/74497
https://nccur.lib.nccu.edu.tw/bitstream/140.119/74497/1/index.html
Přístupové číslo: edsbas.8388A268
Databáze: BASE
Popis
Abstrakt:Password-Authenticated Key Exchange for Client/Server model (PAKE-CS) is where a client and a server, based only on their knowledge of a password, establish a cryptographic key for secure communication. In this paper, we propose a PAKE-CS protocol on the basis of identity-based encryption, where the client needs to remember a password only while the server keeps the password in addition to a private key related to his identity, where the private key is generated by multiple private key generators. Our protocol takes advantage of the features of client/server model and is more efficient than other PAKE-CS protocols in terms that it achieves explicit authentication with two-round communications only. In order to analyze the security of our protocol, we construct an ID-based formal model of security for PAKE-CS by embedding ID-based model into PAKE model. If the underlying identity-based encryption scheme has provable security without random oracle, we can provide a rigorous proof of security for our protocol without random oracles.