Skip to main navigation Skip to search Skip to main content

Design and analysis of password-based key derivation functions

  • Frances F. Yao
  • , Yiqun Lisa Yin

Research output: Chapters, Conference Papers, Creative and Literary WorksRGC 32 - Refereed conference paper (with host publication)peer-review

Abstract

A password-based key derivation function (KDF) - a function that derives cryptographic keys from a password - is necessary in many security applications. Like any password-based schemes, such KDFs are subject to key search attacks (often called dictionary attacks). Salt and iteration count are used in practice to significantly increase the workload of such attacks. These techniques have also been specified in widely adopted industry standards such as PKCS and IETF. Despite the importance and wide-spread usage, there has been no formal security analysis on existing constructions. In this paper, we propose a general security framework for password-based KDFs and introduce two security definitions each capturing a different attacking scenario. We study the most commonly used construction H(c)(p||s) and prove that the iteration count c, when fixed, does have an effect of stretching the password p by log2 c bits. We then analyze the two standardized KDFs in PKCS#5. We show that both are secure if the adversary cannot influence the parameters but subject to attacks otherwise. Finally, we propose a new password-based KDF that is provably secure even when the adversary has full control of the parameters. © Springer-Verlag Berlin Heidelberg 2005.
Original languageEnglish
Title of host publicationTopics in Cryptology - CT-RSA 2005 - The Cryptographers' Track at the RSA Conference 2005
PublisherSpringer Verlag
Pages245-261
Volume3376
ISBN (Print)3540243992
DOIs
Publication statusPublished - 2005
EventCryptographers’ Track at the RSA Conference, CT-RSA 2005 - San Francisco, CA, United States
Duration: 14 Feb 200518 Feb 2005

Publication series

NameLecture Notes in Computer Science
Volume3376
ISSN (Print)0302-9743

Conference

ConferenceCryptographers’ Track at the RSA Conference, CT-RSA 2005
PlaceUnited States
CitySan Francisco, CA
Period14/02/0518/02/05

Bibliographical note

Publication details (e.g. title, author(s), publication statuses and dates) are captured on an “AS IS” and “AS AVAILABLE” basis at the time of record harvesting from the data source. Suggestions for further amendments or supplementary information can be sent to [email protected].

Fingerprint

Dive into the research topics of 'Design and analysis of password-based key derivation functions'. Together they form a unique fingerprint.

Cite this