On the security of the canetti-krawczyk model

  • Authors:
  • Xinghua Li;Jianfeng Ma;SangJae Moon

  • Affiliations:
  • Key Laboratory of Computer Networks and Information Security(Ministry of Education) Xidian University, Xi’an, China;Key Laboratory of Computer Networks and Information Security(Ministry of Education) Xidian University, Xi’an, China;Mobile Network Security Technology Research Center, Kyungpook National University, Daegu, Korea

  • Venue:
  • CIS'05 Proceedings of the 2005 international conference on Computational Intelligence and Security - Volume Part II
  • Year:
  • 2005

Quantified Score

Hi-index 0.00

Visualization

Abstract

The Canetti-Krawczyk (CK) model is a formal method to design and analyze of key agreement protocols, and these protocols should have some desirable security attributes. In this paper, the relationship between the CK model and the desirable security attributes for a key agreement protocol is analyzed. The conclusions indicate that: (1) protocols designed and proved secure by the CK model offer almost all the security attributes, such as perfect forward secrecy (PFS), loss of information, known-key security, key-compromise impersonation and unknown key-share, but the attribute of key control; (2) loss of information and key-compromise impersonation can be guaranteed by the first requirement of the security definition (SK-security) in the CK model, while PFS and known-key security by the second requirement, and unknown key-share can be ensured by either the requirement. Thereafter, the advantages and disadvantages of the CK model are presented.