• DocumentCode
    2343601
  • Title

    On the Security of Certificateless Authenticated Key Agreement Protocol (CL-AK) for Grid Computing

  • Author

    Hou, Mengbo ; Xu, Qiuliang

  • Author_Institution
    Sch. of Comput. Sci. & Technol., Shandong Univ., Jinan, China
  • fYear
    2009
  • fDate
    21-22 Aug. 2009
  • Firstpage
    128
  • Lastpage
    133
  • Abstract
    Grid security infrastructure (GSI) provides an efficient mechanism to solve security problems using conventional public key infrastructure (PKI). The notion of certificateless public key cryptography gives another efficient cryptographic primitive to support Grid security services. In the recent work, Wang et al. proposed the first certificateless authentication and key agreement protocol (CL-AK) for Grid computing based on the Diffie-Hellman key agreement protocol and certificateless public key cryptography, which fits well with the GSI and provides a more lightweight key management approach for entity or data authentication and confidential protection. The authors declare that the protocol achieves many security goals. However, we found the scheme cannot withstand key compromise impersonation attack and key replicating attack, thus it doesn´t possess some desirable security attributes, such as key compromise impersonation resilience and key integrity. We analyze the key replicating attack against the protocol in the BR93 security model in more detail.
  • Keywords
    grid computing; protocols; public key cryptography; security of data; Diffie-Hellman key agreement protocol; certificateless authenticated key agreement protocol; confidential protection; data authentication; grid computing; grid security infrastructure; public key cryptography; public key infrastructure; security; Authentication; Computer science; Computer security; Cryptographic protocols; Data security; Grid computing; Identity-based encryption; Protection; Public key; Public key cryptography; Grid security; certificateless-based cryptography; key agreement protocols; key compromise impersonation; key replicating attack;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    ChinaGrid Annual Conference, 2009. ChinaGrid '09. Fourth
  • Conference_Location
    Yantai, Shandong
  • Print_ISBN
    978-0-7695-3818-1
  • Type

    conf

  • DOI
    10.1109/ChinaGrid.2009.13
  • Filename
    5328166