LI Huimin,LIANG Hongmei,ZHANG Jinhui.An improved certificateless cross - domain authentication key agreement protocol[J].Journal of Yanbian University,2022,(02):143-150.
一个改进的无证书跨域认证密钥协商协议
- Title:
- An improved certificateless cross - domain authentication key agreement protocol
- 文章编号:
- 1004-4353(2022)02-0143-08
- Keywords:
- certificateless; cross - domain authentication; key agreement protocol; public key cryptography
- 分类号:
- TP309
- 文献标志码:
- A
- 摘要:
- 针对文献[11]中提出的CAKA协议存在的无法认证对方身份和容易受到替换公钥攻击威胁的安全问题,给出了一种改进协议.该协议改进了原协议中的3个步骤,使得参与协议的双方用户在执行协议过程中必须用到各自的全部私钥,并在协议双方发送的消息中加入各自的身份信息.实验表明,该改进协议不仅能够克服原协议中的安全性问题,而且提高了计算效率.因此该改进协议对基于无证书公钥系统构造的密钥协商协议具有良好的参考价值,同时也可为同类跨域密钥协商协议的分析与设计提供参考.
- Abstract:
- Aiming at the security problems of CAKA protocol proposed in reference [11], which can not authenticate each othery's identity and will be threatened by replacement public key attack easily, this paper presents an improved protocol.The protocol improves the three steps in the original protocol, so that users on both sides of the protocol must use all their private keys in the process of executing the protocol, and add their identity information to the messages sent by both sides of the protocol.Experiments show that the improved protocol can not only overcome the security problem in the original protocol, but also improve the computational efficiency. Therefore, the improved protocol proposed in this paper has a good reference value for the key agreement protocol based on certificateless public key system, and can also provide a good reference for the analysis and design of similar cross domain key agreement protocols.
参考文献/References:
[1] GUTMANN P.PKI: It's not dead, just resting[J].Computer, 2002,35(8):41 - 49.
[2] SHAMIR A.Identity - based cryptosystems and signature schemes[C]//Workshop on the Theory and Application of Cryptographic Techniques.Berlin - Heidelberg: Springer, 1984:47 - 53.
[3] GENTRY C.Certificate - based encryption and the certificate revocation problem[C]//Advanes in Cryptology: EUROCRYPT 2003, LNCS: 2656.Berlin: Springer - Verlag, 2003:272 - 293.
[4] AL - RIYAMI S S, PATERSON K G.Certificateless public key cryptography[C]//International Conference on the Theory and Application of Cryptology and Information Security.Berlin - Heidelberg: Springer, 2003:452 - 473.
[5] 周彦伟,杨波,张文政.一种改进的无证书两方认证密钥协商协议[J].计算机学报,2017,40(5):1181 - 1190.
[6] 顾兆军,刘东楠.基于身份的无证书双线性对密钥协商方案[J].中国民航大学学报,2019,37(1):55 - 59.
[7] 曾润智,王立斌.一种高效的无证书认证密钥交换协议[J].密码学报,2019,7(4):421 - 429.
[8] 许盛伟,任雄鹏,陈诚,等.可证安全的无证书两方认证密钥协商协议[J].密码学报,2020,7(6):886 - 898.
[9] 马骁,施运梅,宋莹,等.一种无证书的跨域量子密钥协商协议[J].太赫兹科学与电子信息学报,2020,18(6):1098 - 1102.
[10] TAO F S, SHI T, LI S J.Provably secure cross - domain authentication key agreement protocol based on heterogeneous signcryption scheme[C]//2020 IEEE 4th Information Technology, Networking, Electronic and Automation Control Conference(ITNEC).Chongqing: IEEE, 2020,1:2261 - 2266.
[11] LI Y P, CHEN W F, CAI Z P, et al.CAKA: A novel certificateless - based cross - domain authenticated key agreement protocol for wireless mesh networks[J].Wireless Network, 2016,22(8):2523 - 2535.
[12] LIU X, MA W.CDAKA: A provably - secure heterogeneous cross - domain authenticated key agreement protocol with symptoms - matching in TMIS[J]. Journal of Medical Systems, 2018,42(8):135.
[13] ZHOU Y S, LONG X W, CHEN L J, et al.Conditional privacy - preserving authentication and key agreement scheme for roaming services in VANETs[J].Journal of Information Security and Applications, 2019,47:295 - 301.
[14] 曹震震,顾小卓,顾梦鹤.面向Ad Hoc网络的无证书认证组密钥协商协议[J].计算机应用,2019,39(2):476 - 482.
[15] LUO M, WU J Y, LI X J.Cross - domain certificateless authenticated group key agreement protocol for 5G network slicings[J].Telecommunication Systems, 2020,74(4):437 - 449.
[16] BONEH D, FRANKLIN M.Identity - based encryption from the weil pairing[J].SIAM Journal on Computing, 2003,32(3):586 - 615.
[17] WANG S B, CAO Z F, CHENG Z H, et al.Perfect forward secure identity - based authenticated key agreement protocol in the escrow mode[J].Science in China Series F: Information Sciences, 2009,52(8):1358 - 1370.
[18] SHI Y, LI J H.Two - party authenticated key agreement in certificateless public key cryptography[J].Wuhan University Journal of Natural Sciences, 2007,12(1):71 - 74.
[19] HUANG X Y, MU Y, SUSILO W, et al.Certificateless signatures: new schemes and security models[J].The Computer Journal, 2012,55(4):457 - 474.
[20] 李发根,吴威峰.基于配对的密码学[M].北京:科学出版社,2014:42.
备注/Memo
收稿日期: 2021-10-25
基金项目: 福建省自然科学基金(2020J01905); 福建省教育厅中青年教师教育科研项目(JAT200514); 莆田市科技计划项目(2021R4001-10)
作者简介: 李慧敏(1986—),女,硕士,讲师,研究方向为信息安全.