摘要
针对标准模型下可证明安全的基于身份认证密钥协商协议给出了一种有效攻击,指出其无会话密钥托管的协议存在安全缺陷.当密钥生成器(PKG)被恶意控制时,协商的会话密钥仍能被计算出来.为了抵抗这种攻击,给出了一种改进的基于身份认证密钥协商协议.改进的协议在标准模型下是可证明安全的,具有无会话密钥托管的属性.
The security of a provably secure identity-based authenticated key agreement protocol in the standard model was analyzed, and it was found that the protocol used in escrowless mode has security flaws. When the private key generator (PKG) is controlled or attacked, all of the session keys can be obtained. To resist this attack, the identity-based authenticated key agreement protocol was improved. This new protocol was proven to be secure in the standard model and has the property of not needing session key escrow.
出处
《哈尔滨工程大学学报》
EI
CAS
CSCD
北大核心
2009年第10期1194-1198,共5页
Journal of Harbin Engineering University
基金
国家自然科学基金资助项目(60673072
60803149)
国家"973"基础研究发展规划基金资助项目(2007CB311201)
关键词
公钥密码
基于身份的认证密钥协商
双线性对
标准模型
public key cryptography
identity-based authenticated key agreement
bilinear maps
standard model