Journal of Computer Applications ›› 2005, Vol. 25 ›› Issue (04): 859-861.DOI: 10.3724/SP.J.1087.2005.0859

• Information security • Previous Articles     Next Articles

Employing ECMQV key exchange scheme to enhance WTLS security

YE Run-guo1,2,FENG Yang-jun1,2,YU Shu-yao1,2,WU-Yu1,2   

  1. 1.Computer Network Information Center,Chinese Academy of Sciences,Beijing 100080,China; 2.Institute of Computing Technology,Chinese Academy of Sciences,Beijing 100080
  • Online:2005-04-01 Published:2005-04-01

使用ECMQV密钥交换方案增强WTLS协议安全性

叶润国1,2,冯彦君1,2,虞淑瑶1,2,吴宇1,2   

  1. 1.中国科学院计算机网络信息中心; 2.中国科学院计算技术研究所
  • 基金资助:

    中科院知识创新工程下一代因特网综合环境(2001AA2130)子项目(2001AA112136)

Abstract:

ECMQV is an authenticated key exchange scheme based on conventional ECDH protocol,it possesses advantages on higher security and lower computation overhead. This paper implemented a WTLS protocol variant through the integration of ECMQV scheme into WTLS framework; the security of current WTLS protocol was greatly enhanced while only a little more computation overhead was incurred. The WTLS protocol variant can be deployed on lightweight wireless terminals and meet their high-security requirements under future enterprise remote access environments.

Key words: network security, WTLS, authenticated key exchange protocol, ECMQV

摘要:

ECMQV协议是一种基于ECDH的认证和密钥交换方案,它具有高安全性和低计算开销 等优点。通过将ECMQV协议集成到WTLS协议框架中实现了一种WTLS扩展协议,它在略微增加 无线终端计算开销情况下明显提高现有WTLS协议安全性。在协议中采用了Cookie技术来防止可 能的拒绝服务攻击。该WTLS扩展协议可在轻量级无线终端上实现,以满足无线终端在企业远程访 问环境下的高安全性要求。

关键词: 网络安全, WTLS, 密钥交换方案, ECMQV

CLC Number: