A Verifier-Based Key Exchange Protocol in Cross-Realm Setting

Lui Xiumei, Fucai Zhou, Guiran Chang · 2009

In 2006, Yoon et al. proposed a secure client to client password-authenticated key exchange (C2C-PAKE) protocol in a cross-realm setting. However, the secure protocol is susceptible to password-compromise impersonation attack and server compromise attack. In this paper, we propose a verifier-based key exchange protocol, which enables two clients to agree on a common session key based on verifier authentication in cross-realm setting. And we also show that our protocol can resist various attacks.

Read the paper · More papers on PaperTik