东南大学学报(英文版)2008,Vol.24Issue(3):322-324,3.
一种改进的基于验证值的三方密钥交换协议
Improved key exchange protocol for three-party based on verifier authentication
摘要
Abstract
To prevent server compromise attack and password guessing attacks, an improved and efficient verifier-based key exchange protocol for three-party is proposed, which enables two clients to agree on a common session key with the help of the server. In this protocol, the client stores a plaintext version of the password, while the server stores a verifier for the password. And the protocol uses verifiers to authenticate between clients and the server. The security analysis and performance comparison of the proposed protocol shows that the protocol can resist many familiar attacks including password guessing attacks, server compromise attacks, man-in-the-middle attacks and Denning-Sacco attacks, and it is more efficient.关键词
三方密钥交换/基于口令认证/验证值Key words
key exchange for three-party/password-based authentication/verifier分类
信息技术与安全科学引用本文复制引用
柳秀梅,周福才,常桂然..一种改进的基于验证值的三方密钥交换协议[J].东南大学学报(英文版),2008,24(3):322-324,3.基金项目
The National High Technology Research and Develop-ment Program of China (863 Program) (No. 2001AA115300), the Natural Science Foundation of Liaoning Province (No. 20031018, 20062023). (863 Program)