Institutional Repository
| a new client-to-client password-authenticated key agreement protocol | |
| Feng Deng-Guo; Xu Jing | |
| 2009 | |
| Conference Name | 2nd International Workshop on Coding and Cryptology |
| Source | Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) |
| Pages | 63-76 |
| Conference Date | JUN 01-05, |
| Conference Place | Zhangjiajie, PEOPLES R CHINA |
| Indexed Type | 其他 |
| Publish Place | HEIDELBERGER PLATZ 3, D-14197 BERLIN, GERMANY |
| Publisher | CODING AND CRYPTOLOGY, PROCEEDINGS |
| ISSN | 0302-9743 |
| ISBN | 978-3-642-01813-8 |
| Department | Feng, Deng-Guo; Xu, Jing Chinese Acad Sci, Inst Software, State Key Lab Informat Secur, Beijing, Peoples R China. |
| English Abstract | Client-to-clinet password-authenticated key agreement (C2C-PAKA) protocol deals with the authenticated key agreement process between two clients of different realms, who only share their passwords with their own servers. Recently, Byun et al. 13 proposed an efficient C2C-PAKA protocol and carried a claimed proof of security in a formal model of communication and adversarial capabilities. In this paper, we show that the protocol is insecure against password-compromise impersonation attack and the claim of provable security is seriously incorrect. To draw lessons from these results, we revealed fatal flaws in Byun et. al.s security model and their proof of security. Then, we modify formal security model and corresponding security definitions. In addition, a new cross-realm C2C-PAKA protocol is presented with security proof. |
| Keyword | Password-authenticated Key Agreement |
| Sponsorship | Natl Univ Defen Technol, China & Nanyang Technol Univ, NUDT |
| Language | 英语 |
| Content Type | 会议论文 |
| URI | http://ir.iscas.ac.cn/handle/311060/8358 |
| Collection | 信息安全国家重点实验室 |
| Recommended Citation GB/T 7714 | Feng Deng-Guo,Xu Jing. a new client-to-client password-authenticated key agreement protocol[C]. HEIDELBERGER PLATZ 3, D-14197 BERLIN, GERMANY:CODING AND CRYPTOLOGY, PROCEEDINGS,2009:63-76. |
| Files in This Item: | ||||||
| File Name/Size | DocType | Version | Access | License | ||
| a new client-to-clie(261KB) | 开放获取 | -- | Application Full Text | |||
Items in the repository are protected by copyright, with all rights reserved, unless otherwise indicated.
Edit Comment