摘要
口令认证/密钥交换(PAKE协议)协议允许通信双方利用短小易记的口令在不安全的网络上进行相互认证并建立安全的会话密钥,它有着非常广泛的实际应用背景和重要的理论意义。文章介绍了PAKE协议的研究发展动态、PAKE协议的通信模型和PAKE协议标准化工作的研究进展,分析了现有标准候选协议的优劣,指出了需要进一步研究的问题。
The password authentication key exchange (PAKE) protocol allows two communicating parties to perform mutual authentication and establish a common secure session key over an insecure channel with short and easily memorable passwords. It has extensive application background and important theoretic significance. In this paper, the recent advance in the study of PAKE protocols is summarized and the communication model of PAKE protocol is briefly described. In addition, this paper introduces the research development of standardization for PAKE protocol, and analyses the advantages and disadvantages of candidates for standardization. Key problems which need to be solved for further research are also briefly described.
出处
《信息工程大学学报》
2010年第3期368-372,共5页
Journal of Information Engineering University
基金
国家863计划资助项目(2007AA01Z431)
河南省重大科技攻关项目(092101210502)
关键词
口令认证密钥交换(PAKE)
公钥密码技术
可证安全
标准化
password authenticated key exchange (PAKE)
public key cryptographic techniques
provable security
standardization