针对双线性对运算复杂度较高,计算开销较大,提出了新的无双线性对无证书的两方跨域认证密钥协商协议。该协议解决了传统的基于身份的密码体制中固有的密钥托管问题,实现了跨域通信双方的身份验证,采用无双线性对运算,极大地降低了计算开销。在保证协议正确性的基础上,采用SVO逻辑对协议进行形式化分析,并验证了协议的认证性和安全性。与其他跨域两方认证密钥协商协议性能相比,该协议达到应具备的安全性的同时,其效率更优。
Because of the high computational cost, bilinear pairing isn’t equal to mobile communication environment. This paper proposes new certificateless-based two-party authenticated key agreement protocol for a multiple PKG environ-ment without bilinear pairing, which solves the key escrow issues inherited in the identity-based schemes effectively and preventing active attack by identity authentication, and the computational cost decreases effectively without bilinear pairing. After confirming the correctness, the formal analysis based on SVO shows fulfilled authentication and security. Compared with other two-party authenticated key agreement protocols for a multiple PKG environment, the newly proposed key agreement protocol has better security and efficiency.