2009•Unpublished venueRequires access

Comments on Gateway-Oriented Password-Based Authenticated Key Exchange Protocol

Tzong‐Chen Wu, Hung‐Yu Chien

Open publisher page 5 citations

Abstract

A gateway-oriented password-based authenticated key exchange (GPAKE) scheme allows a client to establish an authenticated session key with a gateway via the help of an authentication server, where the client has pre-shared a password with the server. The desirable security properties of a GPAKE include session key semantic security, key privacy against the server, and password guessing attacks resistance. This letter shows that both Byun et al.'s schemes failed to commit the security requirements. The improved scheme would be proposed in the extended version.

About this research paper

What this paper is about

A gateway-oriented password-based authenticated key exchange (GPAKE) scheme allows a client to establish an authenticated session key with a gateway via the help of an authentication server, where the client has pre-shared a password with the server. The desirable security properties of a GPAKE include session key semantic security, key privacy against the server, and password guessing attacks resistance. This letter shows that both Byun et al.'s schemes failed to commit the security requirements. The improved scheme would be proposed in the extended version.

Why it matters

OpenAlex reports 5 citations for this work. Citation counts describe recorded attention and do not establish research quality.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

A gateway-oriented password-based authenticated key exchange (GPAKE) scheme allows a client to establish an authenticated session key with a gateway via the help of an authentication server, where the client has pre-shared a password with the server. The desirable security properties of a GPAKE include session key semantic security, key privacy against the server, and password guessing attacks resistance. This letter shows that both Byun et al.'s schemes failed to commit the security requirements. The improved scheme would be proposed in the extended version.

Key concepts: Computer science, Password, S/KEY, Authenticated Key Exchange, Computer security, One-time password, Password strength, Computer network

Related papers

Back to paper searchBrowse research topicsOriginal source
Comments on Gateway-Oriented Password-Based Authenticated Key Exchange Protocol — Research Paper | ScholarLens