Password-Based Protocols

1Citations
Citations of this article
3Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Cryptographic authentication relies on possession of a key by the party to be authenticated. Such a key is usually chosen randomly within its domain and can be of length from around 100 bits up to many thousands of bits, depending on the algorithm used and security level desired. Experience has shown [273, 741] that humans find it difficult to remember secrets in the form of passwords of even seven or eight characters. But if all upper- and lower-case letters are used together with the digits 0 to 9 then a random eight-character password represents less than 48 bits of randomness. Therefore we can conclude that even short random keys for cryptographic algorithms cannot be reliably remembered by humans. Another way to express this is that it can be assumed that a computer is able to search through all possible passwords in a short time.

Cite

CITATION STYLE

APA

Boyd, C., Mathuria, A., & Stebila, D. (2020). Password-Based Protocols. In Information Security and Cryptography (pp. 329–387). Springer International Publishing. https://doi.org/10.1007/978-3-662-58146-9_8

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free