RMIT University
Browse

Efficient two-server password-only authenticated key exchange

journal contribution
posted on 2024-11-01, 15:36 authored by Xun YiXun Yi, San Ling, Huaxiong Wang
Password-authenticated key exchange (PAKE) is where a client and a server, who share a password, authenticate each other and meanwhile establish a cryptographic key by exchange of messages. In this setting, all the passwords necessary to authenticate clients are stored in a single server. If the server is compromised, due to, for example, hacking or even insider attack, passwords stored in the server are all disclosed. In this paper, we consider a scenario where two servers cooperate to authenticate a client and if one server is compromised, the attacker still cannot pretend to be the client with the information from the compromised server. Current solutions for two-server PAKE are either symmetric in the sense that two peer servers equally contribute to the authentication or asymmetric in the sense that one server authenticates the client with the help of another server. This paper presents a symmetric solution for two-server PAKE, where the client can establish different cryptographic keys with the two servers, respectively. Our protocol runs in parallel and is more efficient than existing symmetric two-server PAKE protocol, and even more efficient than existing asymmetric two-server PAKE protocols in terms of parallel computation.

History

Related Materials

  1. 1.
    ISSN - Is published in 10459219
  2. 2.

Journal

IEEE Transactions on Parallel and Distributed Systems

Volume

24

Issue

9

Start page

1773

End page

1782

Total pages

10

Publisher

IEEE Computer Society

Place published

Los Alamitos, United States

Language

English

Copyright

© 2013 IEEE

Former Identifier

2006048362

Esploro creation date

2020-06-22

Fedora creation date

2015-01-19

Usage metrics

    Scholarly Works

    Categories

    No categories selected

    Keywords

    Exports

    RefWorks
    BibTeX
    Ref. manager
    Endnote
    DataCite
    NLM
    DC