loading...
Improved Client-to-Client Password-Authenticated Key Exchange Protocol
Vienna, Austria April 10-April 13
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/ARES.2007.99The Second International Conference o ...
 This Article 
 
PDF
HTML
 
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Yao Gang, Graduate University of Chinese Academy of Sciences
Feng Dengguo, Graduate University of Chinese Academy of Sciences
Han Xiaoxi, Graduate University of Chinese Academy of Sciences
Password-authenticated key exchange protocols allow two entities who only share a human-memorable password to authenticate each other and agree on a large session key. Most password authenticated key exchange protocols provide an authenticated key exchange between a client and a server based on a pre-shared password. With the development of modern communication environments, it is necessary to design a secure authenticated key exchange between clients. In ICICS'02, Byun et al. presented a client to client password-authenticated key exchange protocol in a crossrealm setting. But the protocol is vulnerable to some attacks by an insider adversary or outsider adversary. In this paper, we present an improved protocol to solve the problem, and prove the improved protocol is secure against all types of attacks considered in the paper.
Citation:
Yao Gang, Feng Dengguo, Han Xiaoxi, "Improved Client-to-Client Password-Authenticated Key Exchange Protocol," ares, pp.564-574, The Second International Conference on Availability, Reliability and Security (ARES'07), 2007
Usage of this product signifies your acceptance of the Terms of Use.