首页> 外文期刊>IETE Technical Review >Cryptanalysis and Enhancement of Two-pass Authenticated Key Agreement with Key Confirmation Protocols
【24h】

Cryptanalysis and Enhancement of Two-pass Authenticated Key Agreement with Key Confirmation Protocols

机译:密码分析和带有密钥确认协议的两次通过认证密钥协议的增强

获取原文
获取原文并翻译 | 示例
       

摘要

In NRSC24, Elkamchouchi et al. proposed a new approach for key controlled agreement to provide key control in the Pour public key distribution system. In NRSC25, they further proposed an efficient and confirmed protocol for authenticated key agreement to provide forward secrecy in their previously proposed protocol. This paper, however, will show that Pour's protocol and Elkamchouchi et al.'s two protocols cannot withstand key compromise impersonation resilience, and man-in-the-middle attacks, and do not have perfect forward secrecy resilience. To eliminate the pointed out security leaks, we further propose a new two-pass authenticated key agreement with a key confirmation protocol. The proposed protocol has the following properties: (ⅰ) it is proved to be secure against above attacks and stronger adversary attacks, and provides the desirable security properties as a three-pass authenticated key agreement protocol. (ⅱ) It can provide entity authentication and assurance for key reception in an indirect way. (ⅲ) It can withstand denial of service attacks. In addition, we also propose a derivation one-pass protocol from the proposed two-pass protocol to fit a one-way communication channel, which is suitable for mobile stations and electronic business transactions. The security and the computational complexities of the proposed two protocols outperform those of previously proposed protocols.
机译:在NRSC24中,Elkamchouchi等人。提出了一种密钥控制协议的新方法,以在Pour公钥分发系统中提供密钥控制。在NRSC25中,他们进一步提出了一种经过验证的有效密钥协议协议,以在其先前提出的协议中提供前向保密性。但是,本文将显示Pour的协议和Elkamchouchi等人的两个协议不能承受关键的折衷模仿弹性和中间人攻击,并且没有完美的前向保密弹性。为了消除指出的安全漏洞,我们进一步提出了一种新的具有密钥确认协议的两遍认证密钥协议。所提出的协议具有以下特性:(ⅰ)被证明对上述攻击和更强的对手攻击是安全的,并且提供了作为三遍认证密钥协商协议的理想安全特性。 (ⅱ)可以间接地为密钥接收提供实体认证和保证。 (ⅲ)它可以承受拒绝服务攻击。此外,我们还提出了一种从提议的两遍协议派生出的单遍协议以适合单向通信信道的协议,适用于移动台和电子商务交易。所提出的两种协议的安全性和计算复杂性优于先前提出的协议。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号