首页> 外文会议>IET International Conference on Frontier Computing : Theory, Technologies and Applications >A Three-party Encrypted Key Exchange Protocol with Protected Password Authentication
【24h】

A Three-party Encrypted Key Exchange Protocol with Protected Password Authentication

机译:具有受保护密码身份验证的三方加密密钥交换协议

获取原文

摘要

In 2008, Yoon and Yoo [19] proposed a password-based 3PEKE scheme, which can improve some secure weaknesses of the password-based 3PEKE scheme [2]. However, in 2009, Lo and Yeh [14] shown that the 3PEKE scheme [19] cannot resist undetectable on-line password guessing attacks and proposed a new approach to solve this problem. Although they actually propose an improved approach, the exchange-message roles are quite different from the traditional 3PEKE schemes [2–5, 8, 10–13, 15, 17–10, 21, 22] in which the key information be exchanged between just one specific client and server. That is, a client will still act as the intermediate role who exchanges the messages flow between the other client and server. In other words, both clients [14] will exchange key information with server, individually. Therefore, we propose an approach, which is called Three-party Encrypted Key Exchange Protocol with Protected Password Authentication (3PEKE-PPA), to improve the traditional password-based 3PEKE scheme. Our scheme can achieve effective implement and resist undetectable on-line password guessing attacks.
机译:2008年,YOON和YOO [19]提出了一种基于密码的3PEKE方案,可以改善基于密码的3PEKE方案的一些安全弱点[2]。但是,在2009年,LO和YEH [14]显示3PEKE方案[19]不能抵抗未检测到的在线密码猜测攻击并提出了一种解决这个问题的新方法。虽然他们实际提出了一种改进的方法,但交换信息角色与传统的3PEKE方案(2-5,8,10-13,15,17-10,21,22)完全不同,其中关键信息在其中交换只是一个特定的客户端和服务器。也就是说,客户端仍将充当交换其他客户端和服务器之间的消息流的中间角色。换句话说,两个客户端[14]将单独使用服务器交换密钥信息。因此,我们提出了一种方法,该方法称为三方加密密钥交换协议,具有受保护的密码身份验证(3Peke-PPA),以改善基于密码的3PEKE方案。我们的计划可以实现有效的实施,抵抗未检测到的在线密码猜测攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号