Threshold Password‐Authenticated Secret Sharing Protocols
Abdulmohsen Almalawi, Zahir Tari, Adil Fahad, Xun Yi · 2020
This chapter presents two efficient threshold password-authenticated secret sharing (TPASS) protocols for SCADA systems, one that is built on a two-phase commitment and has a lower computation complexity and the other that is based on a zero-knowledge proof and has less communication rounds. A close work related to TPASS is the threshold password – an authenticated key exchange (TPAKE), which lets the client agree on a fresh session key with each of the servers, but does not allow the client to store and recover a secret. The chapter defines the security for the TPASS protocol on the basis of the security models for PAKE. Experiments have been carried out to validate the performance of the two protocols. The experimental results have shown that the two TPASS protocols are more efficient than Camenisch et al.’s and save up to 85–95% total computational time and up to 65–75% total communication overheads.