Two Formal Views of Authenticated Group Diffie-Hellman Key Exchange
نویسندگان
چکیده
With the advance of multicast communication infrastructures several works address the task of sharing a session key among a group of users. Some of theses works extend the Diffie-Hellman protocol to the multi-party setting but can not by lack of adequate formal models provide stringent arguments to support the security of their protocols. Fortunately, formal models and formal treatments have recently been carried out by both the cryptographic community and the formalmethod community. In this talk we present our two approaches and our results in each model. This talk is also a first step toward filling out the gap between two “views” of the authenticated group Diffie-Hellman key exchange. The first theoretical concepts of public-key cryptography go back to Diffie and Hellman in 1976 [10] and the first public-key cryptosystem only two years later to Rivest, Shamir and Adleman [23]. In their seminal paper New Directions in Cryptography, Diffie and Hellman provided a method whereby two principals communicating over an insecure network can agree on a secret value, i.e. a value that a computationally bounded adversary can not recover by eavesdropping on flows exchanged between the two principals. Nowadays with the advance of multicast communication infrastructures [2, 8, 13] come the need to extend this method to allow a pool of principals to agree on a secret value. We refer to this extension as the group DiffieHellman protocol [24]. In their original publication, the Diffie-Hellman protocol and the group Diffie-Hellman protocol were designed to protect against a (passive) adver-
منابع مشابه
Dynamic Group Diffie - Hellman Key Exchange under Standard Assumptions ( Ext . abstract )
authenticated Diffie-Hellman key exchange allows two principals communicating over a public network, and each holding public/private keys, to agree on a shared secret value. In this paper we study the natural extension of this cryptographic problem to a group of principals. We begin from existing formal security models and refine them to incorporate major missing details (e.g., strong-corruptio...
متن کاملDynamic group Diffie-Hellman Key Exchange under Standard Assumptions(Full version)
authenticated Diffie-Hellman key exchange allows two principals communicating over a public network, and each holding public/private keys, to agree on a shared secret value. In this paper we study the natural extension of this cryptographic problem to a group of principals. We begin from existing formal security models and refine them to incorporate major missing details (e.g., strong-corruptio...
متن کاملDiffie-Hellman type key exchange protocols based on isogenies
In this paper, we propose some Diffie-Hellman type key exchange protocols using isogenies of elliptic curves. The first method which uses the endomorphism ring of an ordinary elliptic curve $ E $, is a straightforward generalization of elliptic curve Diffie-Hellman key exchange. The method uses commutativity of the endomorphism ring $ End(E) $. Then using dual isogenies, we propose...
متن کاملDynamic Group Diffie-Hellman Key Exchange under Standard Assumptions
Authenticated Diffie-Hellman key exchange allows two principals communicating over a public network, and each holding public/private keys, to agree on a shared secret value. In this paper we study the natural extension of this cryptographic problem to a group of principals. We begin from existing formal security models and refine them to incorporate major missing details (e.g., strong-corruptio...
متن کاملProvably Authenticated Group Diffie-Hellman Key Exchange - The Dynamic Case
Dynamic group Diffie-Hellman protocols for Authenticated Key Exchange (AKE) are designed to work in a scenario in which the group membership is not known in advance but where parties may join and may also leave the multicast group at any given time. While several schemes have been proposed to deal with this scenario no formal treatment for this cryptographic problem has ever been suggested. In ...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2002