In the thesis we focus on designing an authentication system to authenticate users over a network with a username and a password. The system uses the zero-knowledge proof (ZKP) system as a password verification mechanism. The ZKP protocol used is based on the quadratic residuosity problem. The authentication system is defined as a method in the extensible authentication protocol (EAP). Using a ZKP system yields interesting security properties that make the system favourable to be used over insecure networks.
翻译:在论文中,我们侧重于设计一个认证系统,在用户名和密码的网络上验证用户。该系统使用零知识验证(ZKP)系统作为密码核查机制。使用的 ZKP协议基于二次重复问题。认证系统被定义为在可扩展认证协议(EAP)中的一种方法。使用 ZKP 系统产生有趣的安全属性,使得该系统有利于对不安全网络使用。