网络与信息安全学报 (Dec 2017)

Protocol to enhance the security of Early data in TLS 1.3

  • Xing-long ZHANG,
  • Qing-feng CHENG,
  • Jian-feng MA

DOI
https://doi.org/10.11959/j.issn.2096-109x.2017.00224
Journal volume & issue
Vol. 3, no. 12
pp. 22 – 30

Abstract

Read online

The new 0-RTT Internet key exchange was drawn on the TLS 1.3 session resumption phase,the rFSOPKE protocol was constructed,and the Early data encryption and transmission process were improved.The rFSOPKE protocol can protect the forward security of Early data and protect it from replay attacks during the validity period of the Ticket.Compared with the previous Early data transmission process,rFSOPKE greatly enhanced the security of Early data.Due to the increase in the calculation and transmission overhead of this protocol when sending Early data,the efficiency of the protocol is reduced.However,rFSOPKE can embed the appropriate algorithm according to the different application environment,so more efficient algorithms should be chosen to improve the protocol implementation speed.

Keywords