This paper continues the study of password-based protocols for authenticated key exchange (AKE). In 2000, Bellare, Pointcheval, and Rogaway [2] proposed the formal model on AKE. In this paper, we propose new security notions on AKE, based on the non-malleability of session keys. Then we prove that those security notion are equivalent to that proposed in [2]. Furthermore, we show that there is a protocol secure in the random oracle model, not always secure in the standard model with collision-resistant hash functions.
Citation:
Hiroki Hada, Keisuke Tanaka, "Security for Authenticated Key Exchange Based on Non-Malleability," icita, vol. 2, pp.508-513, Third International Conference on Information Technology and Applications (ICITA'05) Volume 2, 2005