首页> 外文OA文献 >Augmented Encrypted Key Exchange: A Password-Based Protocol Secure Against Dictionary Attacks and Password File Compromise
【2h】

Augmented Encrypted Key Exchange: A Password-Based Protocol Secure Against Dictionary Attacks and Password File Compromise

机译:增强型加密密钥交换:一种基于密码的协议,可防止字典攻击和密码文件泄露

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

The encrypted key exchange (EKE) protocol is augmented so that hosts do not store cleartext passwords. Consequently, adversaries who obtain the one-way encrypted password file may (i) successfully mimic (spoof) the host to the user, and (ii) mount dictionary attacks against the encrypted passwords, but cannot mimic the user to the host. Moreover, the important security properties of EKE are preserved—an active network attacker obtains insufficient information to mount dictionary attacks. Two ways to accomplish this are shown, one using digital signatures and one that relies on a family of commutative one-way functions.
机译:增强了加密密钥交换(EKE)协议,以便主机不存储明文密码。因此,获得单向加密密码文件的对手可能(i)成功地向用户模仿(欺骗)主机,并且(ii)对加密密码进行字典攻击,但无法将用户模仿到主机。而且,保留了EKE的重要安全属性-活跃的网络攻击者无法获得足够的信息来发起字典攻击。显示了完成此操作的两种方法,一种使用数字签名,另一种依靠一系列可交换的单向函数。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号