Revisit Of McCullagh--Barreto Two-Party ID-Based Authenticated Key Agreement Protocols

Kim-Kwang Raymond Choo

Abstract: The recently proposed two-party ID-based authenticated key agreement protocols (with and without escrow) and its variant resistant to key-compromise impersonation by McCullagh & Barreto are revisited. The protocol carries a proof of security in the Bellare & Rogaway (1993) model. In this paper, it is demonstrated that the protocols and its variant are not secure if the adversary is allowed to send a Reveal query to reveal non-partner players who had accepted the same session key.

Date: received 1 Dec 2004, last revised 7 Dec 2004

Contact author: k choo at qut edu au

Version: 20041208:015338 (All versions of this report)

