Authors
Mario Di Raimondo, Rosario Gennaro
Publication date
2006/9/30
Journal
Journal of Computer and System Sciences
Volume
72
Issue
6
Pages
978-1001
Publisher
Academic Press
Description
We present two protocols for threshold password authenticated key exchange. In this model, the password is not stored in a single authenticating server but rather shared among a set of n servers so that an adversary can learn the password only by breaking into t+1 of them. The protocols require n > 3t servers to work.
The goal is to protect the password against hackers attacks that can break into the authenticating server and steal password information. All known centralized password authentication schemes are susceptible to such an attack.
Ours are the first protocols which are provably secure in the standard model (i.e. no random oracles are used for the proof of security). Moreover our protocols are reasonably efficient and implementable in practice. In particular a goal of the design was to avoid costly zero-knowledge proofs to keep interaction to a minimum.
Total citations
200220032004200520062007200820092010201120122013201420152016201720182019202020212022202320241321211941084741713141185651284
Scholar articles
M Di Raimondo, R Gennaro - … —EUROCRYPT 2003: International Conference on the …, 2003
M Di Raimondo, R Gennaro - Journal of Computer and System Sciences, 2006