返回
Efficient Two-Server Password-Only Authenticated Key Exchange
DOI:10.1109/TPDS.2012.282.png)
摘要
En 中文
Password-authenticated key exchange (PAKE) is where a client and a server, who share a password, authenticate each other and meanwhile establish a cryptographic key by exchange of messages. In this setting, all the passwords necessary to authenticate clients are stored in a single server. If the server is compromised, due to, for example, hacking or even insider attack, passwords stored in the server are all disclosed. In this paper, we consider a scenario where two servers cooperate to authenticate a client and if one server is compromised, the attacker still cannot pretend to be the client with the information from the compromised server. Current solutions for two-server PAKE are either symmetric in the sense that two peer servers equally contribute to the authentication or asymmetric in the sense that one server authenticates the client with the help of another server. This paper presents a symmetric solution for two-server PAKE, where the client can establish different cryptographic keys with the two servers, respectively. Our protocol runs in parallel and is more efficient than existing symmetric two-server PAKE protocol, and even more efficient than existing asymmetric two-server PAKE protocols in terms of parallel computation.
Keyword:
Password-authenticated key exchange
dictionary attack
Diffie-Hellman key exchange
ElGamal encryption
AI总结
对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。
期刊
IF:
6
论文数:
5.2K
被引数:
1.1W
机构
引用论文
Remembering to execute deferred tasks in simulated air traffic control: The impact of interruptions.
New Polyporphyrin Arrays with Controlled Fluorescence Obtained by Diaxial Sn(IV)-Porphyrin Phenolates Chelation with Cu2+ Cation
Polymers
IF0

