首页> 外文会议>2011 International conference on network computing and information security >A Pairing-Free Identity-Based Authenticated Key Agreement Mechanism for SIP
【24h】

A Pairing-Free Identity-Based Authenticated Key Agreement Mechanism for SIP

机译:基于无配对身份的SIP认证密钥协商机制

获取原文

摘要

The session initiation protocol (SIP) is widely used as a signaling protocol based on the challenge-response exchange mode for handling multimedia sessions in both wire line and wireless world. The original authentication mechanism of SIP is HTTP digest based authentication, which is vulnerable to many forms of known attacks and therefore can not provide security at an acceptable level. In this paper, we propose an identity-based authenticated key agreement mechanism which can be used in SIP to solve the security problems existing in its original authentication procedure. The proposed scheme uses Elliptic Curve Cryptography and does not require expensive bilinear pairing operations, which makes it computationally much more efficient than previous identity-based and Certificateless schemes using pairings. We show the security of our proposal under the Canetti-Krawczky model. Our scheme captures many desirable security properties and can prevent various possible attacks induced by open networks and the standard of SIP message. Furthermore, through introducing some design ideas from Certificateless cryptography, our proposal avoids not only the requirement of a large Public Key Infrastructure but also key escrow problem.
机译:会话发起协议(SIP)被广泛用作基于质询-响应交换模式的信令协议,用于处理有线和无线世界中的多媒体会话。 SIP的原始身份验证机制是基于HTTP摘要的身份验证,它容易受到多种形式的已知攻击的攻击,因此无法在可接受的级别上提供安全性。在本文中,我们提出了一种基于身份的认证密钥协商机制,该机制可用于SIP中,以解决其原始认证过程中存在的安全性问题。所提出的方案使用椭圆曲线密码术,并且不需要昂贵的双线性配对操作,这使其在计算上比以前的使用配对的基于身份和无证书的方案效率更高。我们以Canetti-Krawczky模型展示了我们提案的安全性。我们的方案捕获了许多理想的安全属性,并且可以防止由开放网络和SIP消息标准引起的各种可能的攻击。此外,通过引入无证书密码学的一些设计思想,我们的建议不仅避免了对大型公钥基础结构的需求,而且避免了密钥托管问题。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号