SHU Jian1, XU Chun-xiang1. Analysis and improvement of a password-based authenticated key exchange protocol[J]. 2010, 31(3): 51-56.DOI:
基于口令的认证密钥协商协议的安全分析与改进
摘要
对基于口令的标准模型下可证明安全的认证密钥协商协议进行安全分析
指出该协议易受反射攻击。同时给出了一个改进方案
该方案不仅弥补了原方案的缺陷
而且改善了协议的性能。最后
基于DDH假设
在标准模型下证明了协议的安全性。结果表明
改进后的协议还具有完美前向安全特性。
Abstract
The security of a recently proposed password-based authenticated key exchange protocol was analyzed. Al- though it was provably secure in the standard model
it was vulnerable to reflection attacks. A modify scheme was pro- posed
which eliminated the defect of original scheme and improved the efficiency of the protocol. The security of the proposed scheme had been proven in the standard model under DDH assumption. The results show that it provides per- fect forward secrecy.