首页> 外文OA文献 >Cross-domain password-based authenticated key exchange revisited. ACM Transactions on Information and System Security
【2h】

Cross-domain password-based authenticated key exchange revisited. ACM Transactions on Information and System Security

机译:重新跨域基于密码的身份验证密钥交换。 ACM信息和系统安全事务

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

We revisit the problem of secure cross-domain communication between two users belonging to different security domains within an open and distributed environment. Existing approaches presuppose that either the users are in possession of public key certificates issued by a trusted certificate authority (CA), or the associated domain authentication servers share a long-term secret key. In this article, we propose a generic framework for designing four-party password-based authenticated key exchange (4PAKE) protocols. Our framework takes a different approach from previous work. The users are not required to have public key certificates, but they simply reuse their login passwords, which they share with their respective domain authentication servers. On the other hand, the authentication servers, assumed to be part of a standard PKI, act as ephemeral CAs that certify some key materials that the users can subsequently use to exchange and agree on as a session key. Moreover, we adopt a compositional approach. That is, by treating any secure two-party password-based key exchange (2PAKE) protocol and two-party asymmetric-key/symmetric-key-based key exchange (2A/SAKE) protocol as black boxes, we combine them to obtain generic and provably secure 4PAKE protocols.
机译:我们重新审视在开放和分布式环境中属于不同安全域的两个用户之间的安全跨域通信问题。现有方法以用户拥有由受信任的证书颁发机构(CA)颁发的公共密钥证书为前提,或者关联的域身份验证服务器共享一个长期秘密密钥。在本文中,我们提出了一个通用框架,用于设计基于四方密码的认证密钥交换(4PAKE)协议。我们的框架与以前的工作采用了不同的方法。用户不需要拥有公共密钥证书,而只是重复使用与各自的域身份验证服务器共享的登录密码。另一方面,假定作为标准PKI的一部分的身份验证服务器充当临时CA,这些CA认证用户随后可用来交换并同意作为会话密钥的某些密钥材料。此外,我们采用组合方法。也就是说,通过将任何安全的两方基于密码的密钥交换(2PAKE)协议和基于两方基于非对称密钥/对称密钥的密钥交换(2A / SAKE)协议视为黑匣子,我们将它们结合起来以获得通用以及可证明是安全的4PAKE协议。

著录项

  • 作者

    Chen, L; Lim, HW; Yang, G;

  • 作者单位
  • 年度 2014
  • 总页数
  • 原文格式 PDF
  • 正文语种
  • 中图分类

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号