首页 | 本学科首页   官方微博 | 高级检索  
     

高效的基于口令的三方密钥交换协议
引用本文:许春香,何小虎. 高效的基于口令的三方密钥交换协议[J]. 电子科技大学学报(自然科学版), 2012, 41(4): 596. DOI: 10.3969/j.issn.1001-0548.2012.04.023
作者姓名:许春香  何小虎
作者单位:1.电子科技大学计算机科学与工程学院 成都 611731
基金项目:保密通信重点实验室基金(9140C110301110C1103);部级预研基金(9140A04020311DZ02)
摘    要:基于口令的三方密钥交换协议,通过一个保存了客户的口令或是关于口令的验证值的可信第三方服务器,实现了两个需要相互通信的客户的身份认证和密钥协商。但由于口令的低熵性,使得现有的很多基于口令的三方密钥交换协议容易遭受字典攻击。在现有协议的基础上,利用对称加密算法和Diffie-Hellman两方密钥交换方法,提出了一个高效的基于口令的三方密钥交换协议。该协议能抵御各种现有的攻击,并提供完美的前向安全性。

关 键 词:身份认证   密钥交换   口令   三方
收稿时间:2010-09-25

Efficient Three-Party Password-Based Authenticated Key Exchange Protocol
Affiliation:1.School of Computer Science and Engineering,University of Electronic Science and Technology of China Chengdu 611731
Abstract:Three-party password-based authenticated key exchange protocols allow two clients to authenticate each other and establish a shared session key through a trusted server who preserves clients' passwords or verifiers about passwords. However, because of the low entropy of passwords, password-based authenticated key exchange protocols are vulnerable to dictionary attacks. Based on available protocols, a new efficient three-party password-based authenticated key exchange protocol is proposed by combining the symmetric encryption algorithm with the method of two-party key exchange protocol of Diffie-Hellman. Results indicate that and the proposed protocol can resist against various attacks and provide the perfect forward security.
Keywords:
点击此处可从《电子科技大学学报(自然科学版)》浏览原始摘要信息
点击此处可从《电子科技大学学报(自然科学版)》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号