首页> 外文期刊>Designs, Codes and Crytography >Beyond eCK: perfect forward secrecy under actor compromise and ephemeral-key reveal
【24h】

Beyond eCK: perfect forward secrecy under actor compromise and ephemeral-key reveal

机译:超越eCK:在演员妥协和短暂钥匙泄露下实现完美的前向保密

获取原文
获取原文并翻译 | 示例
       

摘要

We show that it is possible to achieve perfect forward secrecy (PFS) in two-message or one-round key exchange (KE) protocols even in the presence of very strong active adversaries that can reveal random values of sessions and compromise long-term secret keys of parties. We provide two new game-based security models for KE protocols with increasing security guarantees, namely, eCK~w and eCK-PFS. The eCK~w model is a slightly stronger variant of the extended Canetti-Krawczyk (eCK) security model. The eCK-PFS model captures PFS in the presence of eCK~w adversaries. We propose a security-strengthening transformation (i. e., a compiler) from eCK~w to eCK-PFS that can be applied to protocols that only achieve security in a weaker model than eCK~w which we call eCK~(passive). We show that, given a two-message Diffie-Hellman type protocol secure in eCK~(passive), our transformation yields a two-message protocol that is secure in eCK-PFS. We demonstrate how our transformation can be applied to concrete KE protocols. In particular, our methodology allows us to prove the security of the first known one-round protocol that achieves PFS under actor compromise and ephemeral-key reveal.
机译:我们表明即使在非常强大的主动对手的存在下也可以在两个消息或一轮密钥交换(KE)协议中实现完美的前向保密(PFS),这可以揭示会话的随机值并损害长期秘密各方的关键。我们为KE协议提供了两个基于游戏的新安全模型,它们具有越来越高的安全保证,分别是eCK〜w和eCK-PFS。 eCK〜w模型是扩展的Canetti-Krawczyk(eCK)安全模型的稍强变体。 eCK-PFS模型在存在eCK_w对手的情况下捕获PFS。我们提出了从eCK_w到eCK-PFS的加强安全性的转换(即,编译器),该转换可以应用于仅在比eCK_w弱的模型中实现安全性的协议,我们称之为eCK_(passive)。我们证明,给定在eCK〜(被动)中安全的两个消息的Diffie-Hellman类型协议,我们的转换产生了在eCK-PFS中安全的两个消息的协议。我们演示了如何将我们的转换应用于具体的KE协议。尤其是,我们的方法论使我们能够证明第一个已知的单轮协议的安全性,该协议可在参与者妥协和短暂密钥泄露的情况下实现PFS。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号