A Secure and E cient Three-Pass Authenticated Key Agreement Protocol Based on EllipticKey Agreement Protocol • February 21st, 2008
Contract Type FiledFebruary 21st, 2008Abstract. Key agreement protocol is of fundamental importance in pro- viding data con dentiality and integrity between two or more parties over an insecure network. In 2004, Popescu [14] proposed an authenticated key agreement protocol in which its security is claimed. However, Yoon and Yoo [19] discovered its vulnerabilities two years later and proposed an improved variant of it. In this paper, we highlight the vulnerability of this improved variant under the LaMacchia et al.'s extended Canetti- Krawczyk security model [12]. With this, we propose another enhanced version of Popescu's protocol which o ers stronger security features and appears to be signi cantly more e cient than Yoon-Yoo's scheme. In or- der to justify our claims, we present a thorough heuristic security anal- ysis on our scheme and compare the computational cost and security attributes with the surveyed schemes.