首页 | 本学科首页   官方微博 | 高级检索  
     


Password-only authenticated key establishment protocol without public key cryptography
Authors:Laih   C.S. Ding   L. Huang   Y.M.
Affiliation:Dept. of Electr. Eng., Nat. Cheng Kung Univ., Tainan, Taiwan;
Abstract:A scenario in which a user and a server can authenticate each other and generate a strong session key through a symmetric cipher by their shared weak (low-entropy) password in an insecure channel is considered. Until now, designing a secure protocol in this scenario has been an open problem due to the offline dictionary attack. A protocol to resolve this problem is proposed. The idea is to ensure that people must participate to verify each guessed password in the offline dictionary attack. Therefore, this attack cannot succeed in a reasonable time for the proposed protocol.
Keywords:
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号