Bridging Theory and Practice in Key Exchange Protocols
Bridging Theory and Practice in Key Exchange Protocols
批准号:
EP/J011541/1
负责人:
Feng Hao
金额:
$12.73万
依托单位:
依托单位国家:
英国
项目类别:
Research Grant
财政年份:
2012
资助国家:
英国
项目状态:
已结题
起止时间:
2012 至 --
中文摘要
点击翻译按钮获取中文摘要
英文摘要
Key exchange protocols address a crucial problem in security: how to securely distribute cryptographic keys to remote users. Since the seminal paper by Diffie and Hellman in 1976, this subject has been extensively studied for over thirty years. Yet, designing a secure key exchange protocol is notoriously difficult. Many proposed schemes have been found with security flaws, including those specified in the international standards. Heuristic designs based on ad-hoc arguments rather than rigorous security proofs are commonly seen as bad practice. However, several "provably secure" key exchange protocols also turn out to be insecure.So far, almost all key exchange protocols in the past have sidestepped an important engineering principle, namely the sixth principle -- i.e., "Do not assume that a message you receive has a particular form unless you can check this" (Anderson & Needham, 1995).The importance of the sixth principle has been widely acknowledged by the security community for many years, but in reality, key exchange protocol designers have generally abandoned this prudent principle on the grounds of efficiency -- following the sixth principle would require using Zero Knowledge Proof (ZKP), which is considered too computationally expensive. However, discarding ZKP has the serious consequence of degrading the security, as evident by many reported attacks in the past. All these indicate a gap in the field.In the project, we propose to bridge the gap by combing the sixth principle and the Public Key Juggling (PKJ) technique. The PKJ technique has proved useful in tacking several important security problems in the past. It can be integrated with the sixth principle in a perfect match: the former serves to optimize the protocol efficiency while the latter underpins the protocol robustness. In the proposed research, we will apply the sixth principle and the juggling technique to design new key exchange protocols that are robust and efficient. We will develop new formal models to capture the sixth principle, which has been largely neglected by existing model specifications. Finally, we will aim to promote robust and efficient key exchange protocols to the international standards. In particular, our J-PAKE key exchange protocol has stood years of cryptanalysis and has been deployed in practical applications. Its standardization is a natural step forward and will benefit the security industry in general.
期刊论文(9)
专著(0)
科研奖励(0)
会议论文
登录
查看更多内容
On robust key agreement based on public key authentication On robust key agreement based on public key authentication
基于公钥认证的鲁棒密钥协商 基于公钥认证的鲁棒密钥协商
DOI:
10.1002/sec.550
发表时间:
2014
期刊:
Security and Communication Networks
影响因子:
--
作者:
[Hao F]
通讯作者:
Hao F
Cryptanalysis of the Dragonfly key exchange protocol
Dragonfly 密钥交换协议的密码分析
DOI:
10.1049/iet-ifs.2013.0081
发表时间:
2014
期刊:
IET Information Security
影响因子:
1.4
作者:
[Clarke D]
通讯作者:
Clarke D
DOI:
10.1109/tdsc.2015.2423684
发表时间:
2016-11
期刊:
IEEE Transactions on Dependable and Secure Computing
影响因子:
7.3
作者:
[Feng Hao;Dylan Clarke;A. Zorzo]
通讯作者:
Feng Hao;Dylan Clarke;A. Zorzo
Security Standardisation Research - First International Conference, SSR 2014, London, UK, December 16-17, 2014. Proceedings
安全标准化研究 - 第一届国际会议,SSR 2014,英国伦敦,2014 年 12 月 16-17 日。会议记录
DOI:
10.1007/978-3-319-14054-4_2
发表时间:
2014
期刊:
影响因子:
--
作者:
[Hao F]
通讯作者:
Hao F
End to End Authentication of Caller ID in Heterogeneous Telephony Systems
-
批准号:EP/T014784/1
-
项目类别:Research Grant
-
资助金额:$114.81万
-
财政年份:2021
-
负责人:Feng Hao
-
依托单位:
国内基金
海外基金
登录
查看更多内容
Research on Quantum Field Theory without a Lagrangian Description
-
批准号:24ZR1403900
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2024
-
负责人:SATOSHI NAWATA
-
依托单位:
基于isomorph theory研究尘埃等离子体物理量的微观动力学机制
-
批准号:12247163
-
项目类别:专项项目
-
资助金额:18.00万元
-
批准年份:2022
-
负责人:黄栋
-
依托单位:
Toward a general theory of intermittent aeolian and fluvial nonsuspended sediment transport
-
批准号:--
-
项目类别:--
-
资助金额:55万元
-
批准年份:2022
-
负责人:Thomas Pahtz
-
依托单位:
英文专著《FRACTIONAL INTEGRALS AND DERIVATIVES: Theory and Applications》的翻译
-
批准号:12126512
-
项目类别:数学天元基金项目
-
资助金额:12.0万元
-
批准年份:2021
-
负责人:李常品
-
依托单位:
基于Restriction-Centered Theory的自然语言模糊语义理论研究及应用
-
批准号:61671064
-
项目类别:面上项目
-
资助金额:65.0万元
-
批准年份:2016
-
负责人:史树敏
-
依托单位: