Identity-based Password-Authenticated Key Exchange for Client/Server Model

Xun Yi, Raylin Tso, Eiji Okamoto

2012

Abstract

Password-Authenticated Key Exchange for Client/Server model (PAKE-CS) is where a client and a server, based only on their knowledge of a password, establish a cryptographic key for secure communication. In this paper, we propose a PAKE-CS protocol on the basis of identity-based encryption, where the client needs to remember a password only while the server keeps the password in addition to a private key related to his identity, where the private key is generated by multiple private key generators. Our protocol takes advantage of the features of client/server model and is more efficient than other PAKE-CS protocols in terms that it achieves explicit authentication with two-round communications only. In order to analyze the security of our protocol, we construct an ID-based formal model of security for PAKE-CS by embedding ID-based model into PAKE model. If the underlying identity-based encryption scheme has provable security without random oracle, we can provide a rigorous proof of security for our protocol without random oracles.

Download


Paper Citation


in Harvard Style

Yi X., Tso R. and Okamoto E. (2012). Identity-based Password-Authenticated Key Exchange for Client/Server Model . In Proceedings of the International Conference on Security and Cryptography - Volume 1: SECRYPT, (ICETE 2012) ISBN 978-989-8565-24-2, pages 45-54. DOI: 10.5220/0004015900450054

in Bibtex Style

@conference{secrypt12,
author={Xun Yi and Raylin Tso and Eiji Okamoto},
title={Identity-based Password-Authenticated Key Exchange for Client/Server Model},
booktitle={Proceedings of the International Conference on Security and Cryptography - Volume 1: SECRYPT, (ICETE 2012)},
year={2012},
pages={45-54},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0004015900450054},
isbn={978-989-8565-24-2},
}


in EndNote Style

TY - CONF
JO - Proceedings of the International Conference on Security and Cryptography - Volume 1: SECRYPT, (ICETE 2012)
TI - Identity-based Password-Authenticated Key Exchange for Client/Server Model
SN - 978-989-8565-24-2
AU - Yi X.
AU - Tso R.
AU - Okamoto E.
PY - 2012
SP - 45
EP - 54
DO - 10.5220/0004015900450054