...
首页> 外文期刊>IEICE Transactions on Fundamentals of Electronics, Communications and Computer Sciences >Cryptanalysis And Enhancement Of Modified Gateway-oriented Password-based Authenticated Key Exchange Protocol
【24h】

Cryptanalysis And Enhancement Of Modified Gateway-oriented Password-based Authenticated Key Exchange Protocol

机译:修改后的面向网关的基于密码的认证密钥交换协议的密码分析和增强

获取原文
获取原文并翻译 | 示例

摘要

Abdalla et al. proposed a gateway-oriented password-based authenticated key exchange (GPAKE) protocol among a client, a gateway, and an authentication server, where a password is only shared between the client and the authentication server. The goal of their scheme is to securely establish a session key between the client and the gateway by the help of the authentication server without revealing any information on the password to the gateway. Recently, Byun et al. showed that Abdalla et al.'s GPAKE is insecure against undetectable on-line password guessing attacks. They also proposed a modified version to overcome the attacks. In this letter, we point out that Byun et al.'s modified GPAKE protocol is still insecure against the same attacks. We then make a suggestion for improvement.
机译:Abdalla等。提出了在客户端,网关和认证服务器之间的基于网关的基于口令的认证密钥交换(GPAKE)协议,其中仅在客户端和认证服务器之间共享密码。他们的方案的目标是在身份验证服务器的帮助下,在客户端和网关之间安全地建立会话密钥,而不会向网关泄露有关密码的任何信息。最近,Byun等人。表明Abdalla等人的GPAKE对于无法检测到的在线密码猜测攻击是不安全的。他们还提出了修改版本以克服攻击。在这封信中,我们指出Byun等人的修改后的GPAKE协议仍然无法抵御相同的攻击。然后,我们提出改进建议。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号