首页> 外文期刊>IEEE Transactions on Parallel and Distributed Systems >Efficient Two-Server Password-Only Authenticated Key Exchange
【24h】

Efficient Two-Server Password-Only Authenticated Key Exchange

机译:高效的两服务器仅口令认证密钥交换

获取原文
获取原文并翻译 | 示例

摘要

Password-authenticated key exchange (PAKE) is where a client and a server, who share a password, authenticate each other and meanwhile establish a cryptographic key by exchange of messages. In this setting, all the passwords necessary to authenticate clients are stored in a single server. If the server is compromised, due to, for example, hacking or even insider attack, passwords stored in the server are all disclosed. In this paper, we consider a scenario where two servers cooperate to authenticate a client and if one server is compromised, the attacker still cannot pretend to be the client with the information from the compromised server. Current solutions for two-server PAKE are either symmetric in the sense that two peer servers equally contribute to the authentication or asymmetric in the sense that one server authenticates the client with the help of another server. This paper presents a symmetric solution for two-server PAKE, where the client can establish different cryptographic keys with the two servers, respectively. Our protocol runs in parallel and is more efficient than existing symmetric two-server PAKE protocol, and even more efficient than existing asymmetric two-server PAKE protocols in terms of parallel computation.
机译:密码验证密钥交换(PAKE)是共享密码的客户端和服务器相互认证,同时通过交换消息建立加密密钥的地方。在此设置中,认证客户端所需的所有密码都存储在单个服务器中。如果服务器受到攻击(例如由于黑客入侵或内部攻击),则将披露所有存储在服务器中的密码。在本文中,我们考虑一种情况,其中两台服务器合作以对客户端进行身份验证,并且如果一台服务器受到威胁,攻击者仍然无法假冒来自受感染服务器的信息作为客户端。对于两个服务器PAKE的当前解决方案在两个对等服务器均等地对身份验证作出贡献的意义上是对称的,或者在一个服务器借助于另一台服务器来对客户端进行身份验证的意义上是不对称的。本文提出了一种针对两台服务器的PAKE的对称解决方案,其中客户端可以分别与两台服务器建立不同的加密密钥。我们的协议可以并行运行,并且比现有的对称两服务器PAKE协议效率更高,就并行计算而言,它甚至比现有的非对称两服务器PAKE协议效率更高。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号