计算机工程与应用 ›› 2015, Vol. 51 ›› Issue (7): 74-79.

• 网络、通信、安全 • 上一篇    下一篇

无双线性对无证书两方跨域认证密钥协商协议

陈  虹1,郑艳艳1,肖振久1,2   

  1. 1.辽宁工程技术大学 软件学院,辽宁 葫芦岛 125105
    2.中国传媒大学 计算机学院,北京 100024
  • 出版日期:2015-04-01 发布日期:2015-03-31

Certificateless-based two-party authenticated key agreement protocol for multiple PKG environment without bilinear pairing

CHEN Hong1, ZHENG Yanyan1, XIAO Zhenjiu1,2   

  1. 1.School of Software, Liaoning Technical University, Huludao, Liaoning 125105, China
    2.School of Computer, Communication University of China, Beijing 100024, China
  • Online:2015-04-01 Published:2015-03-31

摘要: 针对双线性对运算复杂度较高,计算开销较大,提出了新的无双线性对无证书的两方跨域认证密钥协商协议。该协议解决了传统的基于身份的密码体制中固有的密钥托管问题,实现了跨域通信双方的身份验证,采用无双线性对运算,极大地降低了计算开销。在保证协议正确性的基础上,采用SVO逻辑对协议进行形式化分析,并验证了协议的认证性和安全性。与其他跨域两方认证密钥协商协议性能相比,该协议达到应具备的安全性的同时,其效率更优。

关键词: 密钥协商, 无双线性对, 无证书密码体制, 多PKG环境

Abstract: Because of the high computational cost, bilinear pairing isn’t equal to mobile communication environment. This paper proposes new certificateless-based two-party authenticated key agreement protocol for a multiple PKG environment without bilinear pairing, which solves the key escrow issues inherited in the identity-based schemes effectively and preventing active attack by identity authentication, and the computational cost decreases effectively without bilinear pairing. After confirming the correctness, the formal analysis based on SVO shows fulfilled authentication and security. Compared with other two-party authenticated key agreement protocols for a multiple PKG environment, the newly proposed key agreement protocol has better security and efficiency.

Key words: key agreement, without bilinear pairing, certificateless-based, multiple PKG environment