Paper 2026/745

Round-Optimal Privacy Preserving Authenticated Key Exchange Even for Incomplete Sessions

Xavier Bultel, INSA Centre Val de Loire, Université d'Orléans, Inria Saclay - Île-de-France Research Centre
Khouredia Cisse, INSA Centre Val de Loire, Université d'Orléans, Inria Saclay - Île-de-France Research Centre
Abstract

Several modern applications, such as Signal or WireGuard, use efficient Noise-like implicit authentication key exchanges that require only a small number of exponentiations and two interactions. These protocols have been proven to be secure under the 'strong Diffie–Hellman' (SDH) assumption in the random oracle model (ROM). At ESORICS 2021, Ramacher, Slamanig and Weninger presented an extension to the implicit authenticated key exchange security model, which enables strong privacy properties to be captured in addition to key-secrecy, including man-in-the-middle privacy (ensuring privacy even if a session is interrupted) and forward privacy. They also proposed a protocol to instantiate their model. In this paper, we present an efficient Noise-like protocol that achieve privacy in this model. Our protocol is as efficient as Noise-like protocols that do not guarantee privacy in terms of exponentiations. Moreover, our protocol requires three interactions, which is optimal for this privacy model. It is also more efficient than the ESORICS 2021 protocol in terms of both exponentiations and interactions. Finally, we propose another round-optimal protocol, slightly less efficient in terms of exponentiations, but secure under the CDH assumption in the ROM.

Metadata
Available format(s)
PDF
Category
Cryptographic protocols
Publication info
Published elsewhere. Minor revision. ACNS 2026
Keywords
Authenticated Key ExchangePrivacyProvable security
Contact author(s)
xavier bultel @ insa-cvl fr
khouredia cisse @ insa-cvl fr
History
2026-04-21: approved
2026-04-15: received
See all versions
Short URL
https://ia.cr/2026/745
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2026/745,
      author = {Xavier Bultel and Khouredia Cisse},
      title = {Round-Optimal Privacy Preserving Authenticated Key Exchange Even for Incomplete Sessions},
      howpublished = {Cryptology {ePrint} Archive, Paper 2026/745},
      year = {2026},
      url = {https://eprint.iacr.org/2026/745}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.