Liping Zhang, Shanyu Tang and Zhihua Cai Cryptanalysis and improvement of password-authenticated key agreement for session initiation protocol using smart cards Security and Communication Networks 7

Version of Record online: 17 JAN 2014 | DOI: 10.1002/sec.951

Zhang et al. proposed a password-authenticated key agreement protocol for Session Initiation Protocol by using smart cards to protect the Voice over Internet Protocol communications between users. Their protocol provided some unique features, such as mutual authentication, no password table needed, and password updating freely. In this study, we proposed a much improved protocol based on Zhang et al.'s protocol. The proposed protocol not only inherits the merits of Zhang et al.'s protocol but also solves the problem of suffering from impersonation attacks.

