A note on the use of timestamps as nonces

Clifford Neuman, Stuart G. Stubblebine · ACM SIGOPS Operating Systems Review · 1993

The use of timestamps in key distribution protocols was suggested by Denning and Sacco [DS81]. Timestamps are now used in most production authentication services including Kerberos [SNS88]. Concerns have been raised about the security implications of this practice [Gon92]. Timestamps are necessary in authentication protocols that support multiple authentication without multiple requests to an authentication server. Kehne, Schonwalder, and Langendorfer [KSL92] haveproposed a nonce-based protocol for multiple authentications that they claim improves upon the Kerberos protocol because it does not depend on the presence of synchronized clocks. This note discusses the use of timestamps as nonces and demonstrates a nonce-based mutualauthentication protocol requiring only four messages, one less than described in [KSL92], and the same number of messages required for mutual-authentication in Kerberos. The note concludes by suggesting extensions to our protocol that allow the use of verifier issued timestamps as nonces while recovering some (though not all) of the benefits of traditional timestamps.

Read the paper · More papers on PaperTik