北京大学学报(自然科学版)

一种抗DoS攻击的密钥交换协议

程庆丰1,2,魏福山1,马传贵1   

  1. 1. 信息工程大学信息工程学院, 郑州 450002; 2.解放军外国语学院基础部, 洛阳 471003;
  • 收稿日期:2010-05-15 出版日期:2010-09-20 发布日期:2010-09-20

A New Authenticated Key Exchange Protocol with DoS Resilience

CHENG Qingfeng1, 2, WEI Fushan1, MA Chuangui1   

  1. 1. Institute of Information Engineering, Information Engineering University, Zhengzhou 450002; 2. Department of Basic Courses, PLA University of Foreign Languages, Luoyang 471003;
  • Received:2010-05-15 Online:2010-09-20 Published:2010-09-20

摘要: 对meCK模型进行了扩展, 增加了抵抗拒绝服务(DoS)攻击的能力。提出了一种抵抗拒绝服务攻击的密钥交换协议并分析了协议的各种安全属性。通过分析发现所给协议不但满足一般的安全需求而且具有抵抗拒绝服务攻击安全性以及抵抗临时密钥泄露安全性, 与同类协议DoS-CMQV 相比较, 在保持相等通信与计算效率的同时具有更强的安全性。

关键词: 密钥交换, 安全模型, DoS安全性

Abstract: This paper proposes the extension of meCK model for the design and analysis of authenticated key exchange (AKE) protocols. In the new model, the authors add the DoS resilience and present a new AKE protocol, which can reach DoS resilience and others fundamental security attributes. Compared with DoS-CMQV protocol, the new protocol with stronger security keeps the same efficiency.

Key words: authenticated key exchange, security model, DoS resilience

中图分类号: