请输入您要查询的百科知识:

 

词条 Yahalom (protocol)
释义

  1. Protocol description

  2. See also

  3. References

{{no footnotes|date=June 2013}}

Yahalom is an authentication and secure key-sharing protocol designed for use on an insecure network such as the Internet. Yahalom uses a trusted arbitrator to distribute a shared key between two people. This protocol can be considered as an improved version of Wide Mouth Frog protocol (with additional protection against man-in-the-middle attack), but less secure than the Needham–Schroeder protocol.

Protocol description

If Alice (A) initiates the communication to Bob (B) with S is a server trusted by both parties, the protocol can be specified as follows using security protocol notation:

  • A and B are identities of Alice and Bob respectively
  • is a symmetric key known only to A and S
  • is a symmetric key known only to B and S
  • and are nonces generated by A and B respectively
  • is a symmetric, generated key, which will be the session key of the session between A and B

Alice sends a message to Bob requesting communication.

Bob sends a message to the Server encrypted under .

The Server sends to Alice a message containing the generated session key and a message to be forwarded to Bob.

Alice forwards the message to Bob and verifies has not changed. Bob will verify has not changed when he receives the message.

See also

  • Kerberos
  • Otway–Rees
  • Neuman–Stubblebine

References

  • {{cite book

|last = Schneier
|first = Bruce
|authorlink = Bruce Schneier
|title = Applied Cryptography
|publisher = John Wiley & Sons
|year = 1996
|pages = 57–58
|isbn = 0-471-12845-7}}
  • M. Burrows, M. Abadi, R. Needham A Logic of Authentication, Research Report 39, Digital Equipment Corp. Systems Research Center, Feb. 1989
  • M. Burrows, M. Abadi, R. Needham A Logic of Authentication. ACM Transactions on Computer Systems, v. 8, n. 1, Feb. 1990, pp. 18—36
{{crypto-stub}}

2 : Cryptographic protocols|Computer access control protocols

随便看

 

开放百科全书收录14589846条英语、德语、日语等多语种百科知识,基本涵盖了大多数领域的百科知识,是一部内容自由、开放的电子版国际百科全书。

 

Copyright © 2023 OENC.NET All Rights Reserved
京ICP备2021023879号 更新时间:2024/9/23 12:29:16