A New Key Exchange Protocol for Three-parties

Guiran Chang · Journal of Northeastern University · 2009

To eliminate the disadvantages that the password-authentication key exchange protocols are vulnerable to password guessing attacks and server compromised impersonation attack,a new verifier-based key exchange protocol for three-parties is proposed.In the new protocol the verifier is based on the change of password instead of storing it in the server.In this way the verifier enables the server not only to authenticate user's identity but assist the users to determine a common session key through negotiation.Then,a user can store the password as a private key.The security analysis of the new protocol reveals that it can resist many attacks safely,and the computational costs show that the protocol has higher efficiency.

Read the paper · More papers on PaperTik