Secret Key Agreement by Public Discussion
Ueli Maurer
IEEE Transactions on Information Theory, vol. 39, no. 3, pp. 733–742, May 1993, Preliminary version:
[Maurer92g].
The problem of generating a shared secret key by two parties knowing random variables and , respectively, but not sharing a secret key initially, is considered. An enemy who knows the random variable , jointly distributed with and according to some probability distribution , and who receives all messages exchanged by the two parties over a public channel, must not obtain more than a negligible amount of information about . Upper bounds on as a function of are presented. Lower bounds on the rate (as ) are derived for the case where , and result from independent executions of a random experiment generating and , for . The results of this paper suggest to build cryptographic systems that are provably secure against enemies with unlimited computing power under realistic assumptions about the partial independence of the noise on the involved communication channels.
BibTeX Citation
@article{Maurer93a,
author = {Ueli Maurer},
title = {Secret Key Agreement by Public Discussion},
journal = {IEEE Transactions on Information Theory},
pages = {733--742},
number = {3},
volume = {39},
year = {1993},
month = {5},
note = {Preliminary version: \cite{Maurer92g}},
}