Security analysis and enhancements of a three-party authenticated key agreement protocol

Three-party authenticated key agreement (3PAKA) protocol is an important cryptographic mechanism for secure communication, which allows two clients to generate a shared session key with the help of the server. Recently, Tan proposed a communication and computation-efficient 3PAKA protocol. Compared...

Descripción completa

Detalles Bibliográficos
Autores: Wang, Zhiheng, Huo, Zhanqiang, Shi, Wenbo
Tipo de recurso: artículo
Estado:Versión publicada
Fecha de publicación:2015
País:Brasil
Institución:Universidade Estadual de Maringá (UEM)
Repositorio:Acta scientiarum. Technology (Online)
Idioma:inglés
OAI Identifier:oai:periodicos.uem.br/ojs:article/25240
Acceso en línea:http://www.periodicos.uem.br/ojs/index.php/ActaSciTechnol/article/view/25240
Access Level:acceso abierto
Palabra clave:authenticated key agreement
three-party
provable security.
Descripción
Sumario:Three-party authenticated key agreement (3PAKA) protocol is an important cryptographic mechanism for secure communication, which allows two clients to generate a shared session key with the help of the server. Recently, Tan proposed a communication and computation-efficient 3PAKA protocol. Compared with related protocols, Tan’s protocol requires fewer rounds, lower communication cost and smaller computation cost. Tan claimed that his protocol was secure against various attacks. Unfortunately, we found that his protocol cannot withstand the key compromise impersonation attack. To improve security, we proposed a new 3PAKA protocol. Security analysis and performance analysis show our 3PAKA protocol could overcome weakness in Tan’s protocol at the cost of increasing the computational cost slightly.