首页 | 本学科首页   官方微博 | 高级检索  
     


Toward a secure Kerberos key exchange with smart cards
Authors:Nikos Mavrogiannopoulos  Andreas Pashalidis  Bart Preneel
Affiliation:1. Department of Electrical Engineering/COSIC, KU Leuven, iMinds, Kasteelpark Arenberg 10, Bus 2446, 3001?, Leuven-Heverlee, Belgium
Abstract:Public key Kerberos (PKINIT) is a standard authentication and key establishment protocol. Unfortunately, it suffers from a security flaw when combined with smart cards. In particular, temporary access to a user’s card enables an adversary to impersonate that user for an indefinite period of time, even after the adversary’s access to the card is revoked. In this paper, we extend Shoup’s key exchange security model to the smart card setting and examine PKINIT in this model. Using this formalization, we show that PKINIT is indeed flawed, propose a fix, and provide a proof that this fix leads to a secure protocol.
Keywords:
本文献已被 SpringerLink 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号