Skip to main content

2003 | OriginalPaper | Buchkapitel

EPA: An Efficient Password-Based Protocol for Authenticated Key Exchange

verfasst von : Yong Ho Hwang, Dae Hyun Yum, Pil Joong Lee

Erschienen in: Information Security and Privacy

Verlag: Springer Berlin Heidelberg

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

A password-based protocol for authenticated key exchange must provide security against attacks using low entropy of a memorable password. We propose a new password-based protocol for authenticated key exchange, EPA (Efficient Password-based protocol for Authenticated key exchange), which has smaller computational and communicational workloads than previously proposed protocols with the same security requirements. EPA is an asymmetric model in which each client has a password and the server has a password file. While the server’s password file is compromised, the client’s password is not directly exposed. However, if the adversary mounts an additional dictionary attack, he can obtain the client’s password. By using a modified amplified password file, we construct EPA+, which is secure against dictionary attack and server impersonation even if the server’s password file is compromised.

Metadaten
Titel
EPA: An Efficient Password-Based Protocol for Authenticated Key Exchange
verfasst von
Yong Ho Hwang
Dae Hyun Yum
Pil Joong Lee
Copyright-Jahr
2003
Verlag
Springer Berlin Heidelberg
DOI
https://doi.org/10.1007/3-540-45067-X_39

Premium Partner