• DocumentCode
    3264808
  • Title

    Server based PMK generation with identity protection for wireless networks

  • Author

    Duan, Qi ; Virendra, Mohit

  • Author_Institution
    Dept. of Comput. Sci. & Eng., Univ. at Buffalo, Buffalo, NY
  • fYear
    2008
  • fDate
    19-19 Oct. 2008
  • Firstpage
    27
  • Lastpage
    32
  • Abstract
    Pairwise key generation between two parties is a fundamental problem in cryptography and computer security. In wireless networks, since it is dangerous to store any long-lived secret in wireless devices, pairwise master key (PMK) generation between two parties is based either on passwords (with low entropy) or on some other information. Due to the limited power and computational ability of wireless devices, it is preferable to design protocols with low communication cost and lightweight computation in the client side. In this paper, we propose two PMK generation protocols for wireless networks. The first is based on a shared password between the wireless client and a server (or base station) with more storage and computational power. It only needs lightweight computation for the wireless client, and achieves forward secrecy. The second protocol is used for PMK generation between two wireless devices with the help of the server. Both protocols provide the identity protection for the wireless devices and the mechanism for the server to thwart denial of service (DoS) attacks. These two features are ignored by most previous work, but they are very important for the practical implementation of wireless security protocols. To the best of our knowledge, our protocols are the first to achieve lightweight client computation, identity protection and DoS resistancy simutaneously.
  • Keywords
    cryptographic protocols; network servers; radio networks; telecommunication security; computer security; cryptography; denial of service attack; identity protection; pairwise master key; server based PMK generation protocol; wireless network; wireless security protocol; Base stations; Communication system security; Computational efficiency; Computer security; Cryptography; Entropy; Network servers; Protection; Wireless application protocol; Wireless networks;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Secure Network Protocols, 2008. NPSec 2008. 4th Workshop on
  • Conference_Location
    Orlando, FL
  • Print_ISBN
    978-1-4244-2651-5
  • Electronic_ISBN
    978-1-4244-2652-2
  • Type

    conf

  • DOI
    10.1109/NPSEC.2008.4664877
  • Filename
    4664877