基于CSIDH的认证密钥交换协议
AUTHENTICATION KEY EXCHANGE PROTOCOL BASED ON CSIDH
-
摘要: 针对Galbraith等提出的基于超奇异同源的认证密钥交换协议存在的安全问题,通过使用NAXOS技巧,并将通信双方静态密钥的Diffie-Hellman值添加到会话密钥的计算中,提出一个新的基于CSIDH的两轮认证密钥交换协议,并给出安全性证明。该协议是目前第一个基于CSICDH问题假设,且在eCK模型下可证明安全的认证密钥交换协议。经对比,该协议具有更强的安全属性,具体表现在可抵抗最大暴露攻击和自适应性攻击等方面。Abstract: To solve the security problems in existing of the supersingular isogeny-based authentication key exchange protocol proposed by Galbraith, this paper proposes a new two-round authentication key exchange protocol based on CSIDH by using NAXOS techniques, and adding the Diffie-Hellman value of the static key of the two communicating parties to the calculation of the session key. Its proof of security was given. This protocol was currently the first authentication key exchange protocol based on the CSICDH problem assumption and provably secure under the eCK model. By comparison, the protocol has stronger safety attribute, which is specifically manifested in the ability to resist maximum exposure attacks and adaptive attacks.