首页> 外文OA文献 >On the leakage resilience of secure channel establishment
【2h】

On the leakage resilience of secure channel establishment

机译:关于安全通道建立的泄漏弹性

摘要

Secure communication channels are typically constructed from an authenticated key exchange (AKE) protocol, which authenticates the communicating parties and establishes shared secret keys, and a secure data transmission layer, which uses the secret keys to encrypt data. We address the partial leakage of communicating parties' long-term secret keys due to various side-channel attacks, and the partial leakage of plaintext due to data compression. Both issues can negatively affect the security of channel establishment and data transmission. In this work, we advance the modelling of security for AKE protocols by considering more granular partial leakage of parties' long-term secrets. We present generic and concrete constructions of two-pass leakage-resilient key exchange protocols that are secure in the proposed security models. We also examine two techniques--heuristic separation of secrets and fixed-dictionary compression--for enabling compression while protecting high-value secrets.
机译:安全通信通道通常由认证密钥交换(AKE)协议和安全数据传输层构成,该协议对通信方进行身份验证并建立共享的秘密密钥,而安全数据传输层则使用秘密密钥对数据进行加密。我们解决了由于各种边信道攻击而导致通信方的长期秘密密钥的部分泄漏,以及由于数据压缩而导致的纯文本的部分泄漏。这两个问题都会对通道建立和数据传输的安全性产生负面影响。在这项工作中,我们通过考虑当事方的长期秘密的更精细的部分泄漏来推进AKE协议的安全性建模。我们介绍了在建议的安全模型中是安全的两遍防泄漏弹性密钥交换协议的通用和具体构造。我们还研究了两种技术-启发式秘密分离和固定字典压缩-在保护高价值秘密的同时实现压缩。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号