Paper 2005/206

On Session Key Construction in Provably-Secure Key Establishment Protocols: Revisiting Chen & Kudla (2003) and McCullagh & Barreto (2005) ID-Based Protocols

Kim-Kwang Raymond Choo, Colin Boyd, and Yvonne Hitchcock

Abstract

We examine the role of session key construction in provably- secure key establishment protocols. We revisit an ID-based key establishment protocol due to Chen & Kudla (2003) and an ID-based protocol 2P-IDAKA due to McCullagh & Barreto (2005). Both protocols carry proofs of security in a weaker variant of the Bellare & Rogaway (1993) model where the adversary is not allowed to make any Reveal query. We advocate the importance of such a (Reveal) query as it captures the known-key security requirement. We then demonstrate that a small change to the way that session keys are constructed in both protocols results in these protocols being secure without restricting the adversary from asking the Reveal queries in most situations. We point out some errors in the existing proof for protocol 2P-IDAKA, and provide proof sketches for the improved Chen & Kudla's protocol. We conclude with a brief discussion on ways to construct session keys in key establishment protocols.

Note: N/A.

Metadata
Available format(s)
PDF
Publication info
Published elsewhere. An abridged version of this paper is going to appear in the proceedings of Mycrypt 2005, Volume 3715/2005 of Lecture Notes in Computer Science (pp. 116 - 131) , Springer-Verlag, 28 Sep - 01 Oct 2005
Contact author(s)
k choo @ qut edu au
History
2005-09-03: last of 5 revisions
2005-06-30: received
See all versions
Short URL
https://ia.cr/2005/206
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2005/206,
      author = {Kim-Kwang Raymond Choo and Colin Boyd and Yvonne Hitchcock},
      title = {On Session Key Construction in Provably-Secure Key Establishment Protocols: Revisiting Chen & Kudla (2003) and McCullagh & Barreto (2005) ID-Based Protocols},
      howpublished = {Cryptology ePrint Archive, Paper 2005/206},
      year = {2005},
      note = {\url{https://eprint.iacr.org/2005/206}},
      url = {https://eprint.iacr.org/2005/206}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.