Signature-Based multi-server pake protocol
N. Shafnamol, Kalluri Rama Krishna · 2017
Typical protocols for password-based authentication assume a single server which stores all the information (e.g., the password) necessary to authenticate a user. Unfortunately, an inherent limitation of this approach (assuming low-entropy passwords are used) is that the user's password is exposed if this server is ever compromised. To address this issue, it has been suggested to share a user's password information among multiple servers, and to have these servers cooperate (possibly in a threshold manner) when the user wants to authenticate. We show here a threshold version of the ID2S PAKE protocol of Xun Yi, Fang-Yu Rao, Zahir Tari, Feng Hao, Elisa Bertino, Ibrahim Khalil and Albert Y. Zomaya. Here the client splits his password and store shares of the passsword in n different servers. Then t out of n co-ordinate to authenticate the client. We provide signatures to authenticate the client.