ISCAS OpenIR
RSA-Based Password-Authenticated Key Exchange, Revisited
SeongHan Shin; Kazukuni Kobara; Hideki Imai
2008
发表期刊IEICE - Transactions on Information and Systems
卷号E91-D期号:5页码:1424-1438
摘要The RSA-based Password-Authenticated Key Exchange (PAKE) protocols have been proposed to realize both mutual authentication and generation of secure session keys where a client is sharing his/her password only with a server and the latter should generate its RSA public/private key pair (e, n), (d, n) every time due to the lack of PKI (Public-Key Infrastructures). One of the ways to avoid a special kind of off-line (so called e-residue) attacks in the RSA-based PAKE protocols is to deploy a challenge/response method by which a client verifies the relative primality of e and φ(n) interactively with a server. However, this kind of RSA-based PAKE protocols did not give any proof of the underlying challenge/response method and therefore could not specify the exact complexity of their protocols since there exists another security parameter, needed in the challenge/response method. In this paper, we first present an RSA-based PAKE (RSA-PAKE) protocol that can deploy two different challenge/response methods (denoted by Challenge/Response Method1 and Challenge/Response Method2). The main contributions of this work include: (1) Based on the number theory, we prove that the Challenge/Response Method1 and the Challenge/Response Method2 are secure against e-residue attacks for any odd prime e; (2) With the security parameter for the on-line attacks, we show that the RSA-PAKE protocol is provably secure in the random oracle model where all of the off-line attacks are not more efficient than on-line dictionary attacks; and (3) By considering the Hamming weight of e and its complexity in the RSA-PAKE protocol, we search for primes to be recommended for a practical use. We also compare the RSA-PAKE protocol with the previous ones mainly in terms of computation and communication complexities.
收录类别其他
合作性质其它
语种英语
内容类型期刊论文
URI标识http://ir.iscas.ac.cn/handle/311060/1360
专题中国科学院软件研究所
推荐引用方式
GB/T 7714
SeongHan Shin,Kazukuni Kobara,Hideki Imai. RSA-Based Password-Authenticated Key Exchange, Revisited[J]. IEICE - Transactions on Information and Systems,2008,E91-D(5):1424-1438.
APA SeongHan Shin,Kazukuni Kobara,&Hideki Imai.(2008).RSA-Based Password-Authenticated Key Exchange, Revisited.IEICE - Transactions on Information and Systems,E91-D(5),1424-1438.
MLA SeongHan Shin,et al."RSA-Based Password-Authenticated Key Exchange, Revisited".IEICE - Transactions on Information and Systems E91-D.5(2008):1424-1438.
条目包含的文件
文件名称/大小 文献类型 版本类型 开放类型 使用许可
bj01150135.pdf(1286KB) 开放获取使用许可请求全文
个性服务
推荐该条目
保存到收藏夹
查看访问统计
导出为Endnote文件
谷歌学术
谷歌学术中相似的文章
[SeongHan Shin]的文章
[Kazukuni Kobara]的文章
[Hideki Imai]的文章
百度学术
百度学术中相似的文章
[SeongHan Shin]的文章
[Kazukuni Kobara]的文章
[Hideki Imai]的文章
必应学术
必应学术中相似的文章
[SeongHan Shin]的文章
[Kazukuni Kobara]的文章
[Hideki Imai]的文章
相关权益政策
暂无数据
收藏/分享
所有评论 (0)
暂无评论
 

除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。