Provably Secure Asymmetric PAKE Protocol for Protecting IoT Access
Mingping Qi, Wei Hu · IEEE Internet of Things Journal · 2023
Pake allows two parties who share a memorable password to securely establish a strong secret key. It has been deployed in many applications around us, such as iCloud service, Wi-Fi access, etc., to provide security assurance for us. In this article, we present a secure and efficient asymmetric PAKE (aPAKE) protocol for protecting the access to the resource-constraint Internet of Things (IoT). Besides the general passive and active attacks, the new aPAKE protocol provides resilience to the offline dictionary attack, and the server compromise attack such that an adversary cannot impersonate the client to the server even if it has compromised the corresponding server and obtained the stored password file. The new aPAKE protocol is detailed in the elliptic curve setting in this article, while it is also compatible with the multiplicative group over a finite field. The security proof for the new aPAKE protocol is carried out in the widely accepted acrshort BPR security model under the basic acrshort CDH security assumption, which implies that our new aPAKE protocol has certain security advantages over some others whose security proofs need to be based on some stronger security assumptions. In addition, the new aPAKE protocol has computational efficiency and ease-of-implementation advantages over some existing aPAKE protocols whose constructions require the use of the hash-to-curve (H2C) function, and the performance evaluation results have definitely shown this fact.