Tongxin xuebao (Jan 2008)
Analysis and improvement of an ID-based authenticated key agreement protocol
Abstract
The security of a recently proposed ID-based authenticated key agreement protocol was analyzed. Although it is provably secure in the standard model, a malicious PKG (private key generator) can still obtain all of the agreed ses-sion keys, that is, it doesn’t provide PKG-forward secrecy in escrowless mode. To satisfy the security requirement in es-crowless mode, an improved version of the protocol was presented and it was proved to be a secure authenticated key agreement in the standard model. Results show that it provides perfect forward secrecy and PKG-forward secrecy.