Modeling Leakage of Ephemeral Secrets in Tripartite/Group Key Exchange

Mark MANULIS  Koutarou SUZUKI  Berkant USTAOGLU  

IEICE TRANSACTIONS on Fundamentals of Electronics, Communications and Computer Sciences   Vol.E96-A   No.1   pp.101-110
Publication Date: 2013/01/01
Online ISSN: 1745-1337
DOI: 10.1587/transfun.E96.A.101
Print ISSN: 0916-8508
Type of Manuscript: Special Section PAPER (Special Section on Cryptography and Information Security)
Category: Public Key Based Protocols
group key exchange,  group-oriented extended Canetti-Krawczyk model,  tripartite key exchange,  gap Bilinear Diffie-Hellman assumption,  random oracle model,  

Full Text: PDF(461.1KB)
>>Buy this Article

We propose a security model, referred as g-eCK model, for group key exchange that captures essentially all non-trivial leakage of static and ephemeral secret keys of participants, i.e., group key exchange version of extended Canetti-Krawczyk (eCK) model. Moreover, we propose the first one-round tripartite key exchange (3KE) protocol secure in the g-eCK model under the gap Bilinear Diffie-Hellman (gap BDH) assumption and in the random oracle model.