Predicate-based key exchange
Abstract
We provide the first description of and security model for authenticated key exchange protocols with predicate-based authentication. In addition to the standard goal of session key security, our security model also provides for credential privacy: a participating party learns nothing more about the other party’s credentials than whether they satisfy the given predicate. Our model also encompasses attribute-based key exchange since it is a special case of predicate-based key exchange.
We demonstrate how to realize a secure predicate-based key exchange protocol by combining any secure predicate-based signature scheme with the basic Diffie-Hellman key exchange protocol, providing an efficient and simple solution.
Reference
James Birkett and Douglas Stebila. Predicate-based key exchange. In Ron Steinfeld and Phillip Hawkes, editors, Proc. 15th Australasian Conf. on Information Security and Privacy (ACISP) 2010, LNCS, volume 6168, pp. 282–299. Springer, 2010. © Springer. Eprint http://eprint.iacr.org/2010/082.Download
- Publisher’s website: DOI: 10.1007/978-3-642-14081-5_18
- Author’s website: PDF, BibTeX
- Cryptology ePrint Archive: http://eprint.iacr.org/2010/082
Presentations
- 2010/07/06: “Predicate-based key exchange.” Presented by James Birkett at the 15th Australasian Conference on Information Security and Privacy (ACISP) 2010. (PDF slides)
