Design Principles and Security of Authentication Protocols with Trusted Third Party

Xianxian Li, Jun Han, Zhaohao Sun · 2004

Two-way identity authentication is the basis of secure communication in a distributed application environment. A trusted third party (TTP) is needed while PKI is not applicable, and the design of authentication protocols with TTP is a complicate and challenging task. This paper examines the characteristics of the security of authentication protocols with TTP, summarizes the essential factors of session key and illustrates the potential attacks while these essential factors are not well considered. It also proposes some design principles and a model of authentication protocol with TTP.

Read the paper · More papers on PaperTik