Presentation 2016-03-04
A Study of Security of an Authentication Method Using Public and Private Keys with Relaying Plural Key Pairs
Yusuke Ogata, Yoshihiko Omori, Takao Yamashita, Tetsuya Iwata,
PDF Download Page PDF download Page Link
Abstract(in Japanese) (See Japanese page)
Abstract(in English) It is difficult to sufficiently protect web accounts using a password-based authentication method against threats of many types of security attacks and hackings. A highly secure authentication method without using passwords has been standardized by FIDO Alliance in order to improve weak security of password-based authentication, where the number of companies and governments joining to FIDO Alliance is rapidly increasing. In this paper, we focus on an authentication method using public and private keys with relaying plural key pairs. The method is an improved the FIDO in terms of usability, however, an analysis of security is not enough and we clarify issues of security. The goal of security level is equivalence of FIDO and we propose a solution and evaluate it.
Keyword(in Japanese) (See Japanese page)
Keyword(in English) Public Key / Private Key / Authentication / Threat / Risk / Security
Paper # ICSS2015-62
Date of Issue 2016-02-25 (ICSS)

Conference Information
Committee ICSS / IPSJ-SPT
Conference Date 2016/3/3(2days)
Place (in Japanese) (See Japanese page)
Place (in English) Academic Center for Computing and Media Studies, Kyoto University
Topics (in Japanese) (See Japanese page)
Topics (in English) Information and Communication System Security, etc.
Chair Yutaka Miyake(KDDI R&D Labs.)
Vice Chair Takashi Nishide(Univ. of Tsukuba) / Yoshiaki Shiraishi(Kobe Univ.)
Secretary Takashi Nishide(Mitsubishi Electric) / Yoshiaki Shiraishi(NII)
Assistant Katsunari Yoshioka(Yokohama National Univ.) / Kazunori Kamiya(NTT)

Paper Information
Registration To Technical Committee on Information and Communication System Security / Special Interest Group on Security Psychology and Trust
Language JPN
Title (in Japanese) (See Japanese page)
Sub Title (in Japanese) (See Japanese page)
Title (in English) A Study of Security of an Authentication Method Using Public and Private Keys with Relaying Plural Key Pairs
Sub Title (in English)
Keyword(1) Public Key
Keyword(2) Private Key
Keyword(3) Authentication
Keyword(4) Threat
Keyword(5) Risk
Keyword(6) Security
1st Author's Name Yusuke Ogata
1st Author's Affiliation Nippon Telegraph and Telephone corporation(NTT)
2nd Author's Name Yoshihiko Omori
2nd Author's Affiliation Nippon Telegraph and Telephone corporation(NTT)
3rd Author's Name Takao Yamashita
3rd Author's Affiliation Nippon Telegraph and Telephone corporation(NTT)
4th Author's Name Tetsuya Iwata
4th Author's Affiliation Nippon Telegraph and Telephone corporation(NTT)
Date 2016-03-04
Paper # ICSS2015-62
Volume (vol) vol.115
Number (no) ICSS-488
Page pp.pp.89-94(ICSS),
#Pages 6
Date of Issue 2016-02-25 (ICSS)