\input zb-basic \input zb-ioport \iteman{io-port 05988758} \itemau{Kuppusamy, Lakshmi; Rangasamy, Jothi; Stebila, Douglas; Boyd, Colin; Gonzalez Nieto, Juan} \itemti{Towards a provably secure dos-resilient key exchange protocol with perfect forward secrecy.} \itemso{Bernstein, Daniel J. (ed.) et al., Progress in cryptology -- INDOCRYPT 2011. 12th international conference on cryptology in India, Chennai, India, December 11--14, 2011. Proceedings. Berlin: Springer (ISBN 978-3-642-25577-9/pbk). Lecture Notes in Computer Science 7107, 379-398 (2011).} \itemab Summary: Just Fast Keying (JFK) is a simple, efficient and secure key exchange protocol proposed by Aiello et al.(ACM TISSEC, 2004). JFK is well known for its novel design features, notably its resistance to denial-of-service (DoS) attacks. Using Meadows' cost-based framework, we identify a new DoS vulnerability in JFK. The JFK protocol is claimed secure in the Canetti-Krawczyk model under the Decisional Diffie-Hellman (DDH) assumption. We show that security of the JFK protocol, when re-using ephemeral Diffie-Hellman keys, appears to require the Gap Diffie-Hellman (GDH) assumption in the random oracle model. We propose a new variant of JFK that avoids the identified DoS vulnerability and provides perfect forward secrecy even under the DDH assumption, achieving the full security promised by the JFK protocol. \itemrv{~} \itemcc{} \itemut{Denial of service; Meadows' cost-based framework; Just Fast Keying; client puzzles; key agreement; perfect forward secrecy} \itemli{doi:10.1007/978-3-642-25578-6\_27} \end