The Improved ECDH Authentication and Key Agreement Protocol Based on Certificate
Wang Xin-gu
Abstract
Wang Xin-gu
Abstract
Since ECDH was easily suffered from man-in-the-middle attack,a secure improved ECDH mutual authentication and key agreement protocol based on certificate is proposed. The protocol uses node certificate to realize mutual authentication of communication nodes,and the session key is generated,exchanged and verificated by ECDH algorithm. The protocol is of such security properties as mutual authentication,entity equivalence,key uncontrollability,session key confirmation,perfect forw ard security,and resistance to know n key attacks. Furthermore,the protocol as compared w ith traditional ones,is simple in management,low in overhead,and high in security,and could achieve secure key agreement and verification betw een the communication parties w ith low er computing cost and higher efficiency. Analysis indicates that the protocol is fairly applicable to end-to-end authentication and session key agreement in mobile communication and Internet of things.
OpenAlex reports 2 citations for this work. Citation counts describe recorded attention and do not establish research quality.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
Since ECDH was easily suffered from man-in-the-middle attack,a secure improved ECDH mutual authentication and key agreement protocol based on certificate is proposed. The protocol uses node certificate to realize mutual authentication of communication nodes,and the session key is generated,exchanged and verificated by ECDH algorithm. The protocol is of such security properties as mutual authentication,entity equivalence,key uncontrollability,session key confirmation,perfect forw ard security,and resistance to know n key attacks. Furthermore,the protocol as compared w ith traditional ones,is simple in management,low in overhead,and high in security,and could achieve secure key agreement and verification betw een the communication parties w ith low er computing cost and higher efficiency. Analysis indicates that the protocol is fairly applicable to end-to-end authentication and session key agreement in mobile communication and Internet of things.
Key concepts: Computer science, Mutual authentication, Computer network, Key-agreement protocol, Key (lock), Authentication (law), Certificate, Session key