{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,9]],"date-time":"2025-10-09T00:45:20Z","timestamp":1759970720066,"version":"build-2065373602"},"reference-count":33,"publisher":"MDPI AG","issue":"2","license":[{"start":{"date-parts":[[2025,1,27]],"date-time":"2025-01-27T00:00:00Z","timestamp":1737936000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62472144","ICNS202006"],"award-info":[{"award-number":["62472144","ICNS202006"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Shaanxi Key Laboratory of Information Communication Network and Security, Xi\u2019an University of Posts and Telecommunications","award":["62472144","ICNS202006"],"award-info":[{"award-number":["62472144","ICNS202006"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Entropy"],"abstract":"<jats:p>In the context of increasing demand for secure and efficient communication networks, addressing the issue of mutual authentication in ethernet passive optical networks (EPONs) has become both valuable and practically significant. This paper proposes a solution based on ideal lattices. The proposed scheme leverages the security of the ring learning with errors (RLWE) problem to establish a robust public-key cryptosystem. By involving ONUs, OLTs, and an SDN controller in the authentication process, it enables mutual authentication through a series of message exchanges facilitated by the SDN controller. Utilizing approximate smooth projection hash functions for secure key exchange and verification, the scheme ensures robust security performance against various attacks, including man-in-the-middle, impersonation, replay, and known key secrecy attacks. Simulation results demonstrate that the proposed solution introduces minimal delay and maintains a high registration success rate compared to traditional authentication methods. Additionally, this paper explores the convergence of quantum network protocols with EPONs, highlighting their potential to achieve unprecedented levels of communication security. Integrating quantum technology with EPON networks, due to the unique security properties of quantum, can also better prevent man-in-the-middle attacks. Secure interception detection techniques based on fundamental quantum properties provide a fundamental security direction for future communication systems, aligning with the growing interest in quantum-resistant cryptographic protocols.<\/jats:p>","DOI":"10.3390\/e27020135","type":"journal-article","created":{"date-parts":[[2025,1,27]],"date-time":"2025-01-27T11:38:49Z","timestamp":1737977929000},"page":"135","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Ethernet Passive Mutual Authentication Scheme on Quantum Networks"],"prefix":"10.3390","volume":"27","author":[{"given":"Jianuo","family":"Tian","sequence":"first","affiliation":[{"name":"Jiaozuo Technician College, Jiaozuo 454000, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6457-5853","authenticated-orcid":false,"given":"Panke","family":"Qin","sequence":"additional","affiliation":[{"name":"School of Software, Henan Polytechnic University, Jiaozuo 454000, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zongqu","family":"Zhao","sequence":"additional","affiliation":[{"name":"School of Software, Henan Polytechnic University, Jiaozuo 454000, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7617-5462","authenticated-orcid":false,"given":"Baodong","family":"Qin","sequence":"additional","affiliation":[{"name":"Shaanxi Key Laboratory of Information Communication Network and Security, Xi\u2019an University of Posts & Telecommunications, Xi\u2019an 710121, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"1968","published-online":{"date-parts":[[2025,1,27]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","first-page":"101677","DOI":"10.1016\/j.phycom.2022.101677","article-title":"An efficient packet parser architecture for software-defined 5G networks","volume":"53","author":"Yazdinejad","year":"2022","journal-title":"Phys. Commun."},{"key":"ref_2","doi-asserted-by":"crossref","unstructured":"Zikria, Y.B., Kim, S.W., Afzal, M.K., Wang, H.X., and Rehmani, M.H. (2018). 5G Mobile Services and Scenarios: Challenges and Solutions. Sustainability, 10.","DOI":"10.3390\/su10103626"},{"key":"ref_3","doi-asserted-by":"crossref","unstructured":"Yang, C.Z., Lotfolahi, M.A., Hwang, I.S., Ab-Rahman, M.S., Nikoukar, A., Liem, A.T., and Ganesan, E. (2022). Enhancing Energy Efficiency of the Doze Mode Mechanism in Ethernet Passive Optical Networks Using Support Vector Regression. Photonics, 9.","DOI":"10.3390\/photonics9030180"},{"key":"ref_4","doi-asserted-by":"crossref","first-page":"2478","DOI":"10.1109\/TCOMM.2014.2325573","article-title":"Stability and Delay Analysis of EPON Registration Protocol","volume":"62","author":"Cui","year":"2014","journal-title":"IEEE. T. Commun."},{"key":"ref_5","doi-asserted-by":"crossref","first-page":"555","DOI":"10.1515\/joc-2021-0250","article-title":"RNN based EPON dynamic bandwidth allocation algorithm for complex network","volume":"45","author":"Yu","year":"2022","journal-title":"J. Opt. Commun."},{"key":"ref_6","doi-asserted-by":"crossref","first-page":"263","DOI":"10.1587\/transcom.E93.B.263","article-title":"Discovery Method for Ethernet Optical Switched Access Network","volume":"93","author":"Ueda","year":"2010","journal-title":"IEICE Trans. Commun."},{"key":"ref_7","unstructured":"(2004). IEEE 802.3ah-2004, IEEE. Ethernet in the First Mile (EFM)."},{"key":"ref_8","unstructured":"Roh, S.S., and Kim, S.H. (2003, January 30). Security model and authentication protocol in EPON-based optical access network. Proceedings of the 2003 5th International Conference on Transparent Optical Networks, Warsaw, Poland."},{"key":"ref_9","doi-asserted-by":"crossref","unstructured":"Roh, S.S., Kim, S.H., and Kim, G.H. (2004). Design of Authentication and Key Exchange Protocol in Ethernet Passive Optical Networks. Computational Science and Its Applications\u2014ICCSA 2004, Springer.","DOI":"10.1007\/978-3-540-24707-4_116"},{"key":"ref_10","doi-asserted-by":"crossref","unstructured":"Chen, X., Shou, G., Guo, Z., and Hu, Y. (2010, January 22\u201323). Encryption and Authentication Mechanism of 10G EPON Systems Based on GCM. Proceedings of the 2010 2nd International Conference on E-business and Information System Security, Wuhan, China.","DOI":"10.1109\/EBISS.2010.5473490"},{"key":"ref_11","unstructured":"In\u00e1cio, P.R.M., Hajduczenia, M., Freire, M.M., Silva, H.J.A.D., and Monteiroet, P.P. (November, January 29). Preamble Encryption Mechanism for Enhanced Privacy in Ethernet Passive Optical Networks. Proceedings of the On the Move to Meaningful Internet Systems, Montpellier, France."},{"key":"ref_12","first-page":"5947","article-title":"Secure authentication scheme for 10 Gbit\/s Ethernet passive optical networks","volume":"25","author":"Zhu","year":"2014","journal-title":"Optik"},{"key":"ref_13","doi-asserted-by":"crossref","first-page":"066108","DOI":"10.1117\/1.OE.57.6.066108","article-title":"10 Gbit\/s ethernet passive optical network certification scheme based on number theory research unit signature algorithm","volume":"57","author":"Yin","year":"2018","journal-title":"Opt. Eng."},{"key":"ref_14","doi-asserted-by":"crossref","first-page":"301","DOI":"10.1364\/JOCN.434739","article-title":"Security enhanced dynamic bandwidth allocation algorithm against degradation attacks in next generation passive optical networks","volume":"13","author":"Atan","year":"2021","journal-title":"J. Opt. Commun. Netw."},{"key":"ref_15","doi-asserted-by":"crossref","first-page":"227","DOI":"10.1002\/itl2.277","article-title":"Quantitative model checking for assessing the energy impact of a MITM attack on EPONs","volume":"5","author":"Tsompanoglou","year":"2022","journal-title":"Internet. Technol. Lett."},{"key":"ref_16","first-page":"881","article-title":"Quantum key distribution based on selective post-processing in passive optical networks","volume":"6","author":"Ciurana","year":"2014","journal-title":"IEEE Photonic. Technol. Lett."},{"key":"ref_17","doi-asserted-by":"crossref","first-page":"6952869","DOI":"10.1155\/2021\/6952869","article-title":"Improved Verifier-Based Three-Party Password- Authenticated Key Exchange Protocol from Ideal Lattices","volume":"2021","author":"Tang","year":"2021","journal-title":"Secur. Commun. Netw."},{"key":"ref_18","doi-asserted-by":"crossref","first-page":"060312","DOI":"10.1007\/s11433-017-9143-y","article-title":"Photonic quantum network transmission assisted by the weak cross-Kerr nonlinearity","volume":"61","author":"Wang","year":"2018","journal-title":"Sci. China Phys."},{"key":"ref_19","doi-asserted-by":"crossref","first-page":"140402","DOI":"10.1103\/PhysRevLett.120.140402","article-title":"Computationally Efficient Nonlinear Bell Inequalities for Quantum Networks","volume":"120","author":"Luo","year":"2018","journal-title":"Phys. Rev. Lett."},{"key":"ref_20","doi-asserted-by":"crossref","first-page":"062317","DOI":"10.1103\/PhysRevA.101.062317","article-title":"Nonsignaling causal hierarchy of general multisource networks","volume":"101","author":"Luo","year":"2020","journal-title":"Phys. Rev. A"},{"key":"ref_21","doi-asserted-by":"crossref","first-page":"013203","DOI":"10.1103\/PhysRevResearch.4.013203","article-title":"Fully device-independent model on quantum networks","volume":"4","author":"Luo","year":"2022","journal-title":"Phys. Rev. Res."},{"key":"ref_22","doi-asserted-by":"crossref","first-page":"1900","DOI":"10.1109\/JSAC.2024.3380091","article-title":"The network capacity of entangled quantum Internet","volume":"42","author":"Jiang","year":"2024","journal-title":"IEEE J. Sel. Area Commun."},{"key":"ref_23","first-page":"7189","article-title":"The quantum internet","volume":"1023\u20131030","author":"Kimble","year":"2008","journal-title":"Nature"},{"key":"ref_24","doi-asserted-by":"crossref","first-page":"289","DOI":"10.1038\/d41586-018-01835-3","article-title":"The quantum internet has arrived (and it hasn\u2019t)","volume":"554","author":"Castelvecchi","year":"2018","journal-title":"Nature"},{"key":"ref_25","doi-asserted-by":"crossref","first-page":"045006","DOI":"10.1103\/RevModPhys.95.045006","article-title":"Quantum repeaters: From quantum networks to the quantum internet","volume":"95","author":"Azuma","year":"2023","journal-title":"Rev. Mod. Phys."},{"key":"ref_26","unstructured":"Fu, Z.Y., and Li, Z.J. (2010, January 29\u201331). Study of Authentication and Encryption Scheme in EPON. Proceedings of the Third International Symposium on Electronic Commerce and Security Workshops, Guangzhou, China."},{"key":"ref_27","unstructured":"Zhang, L. (2011). Design and Hardware Implementation of EPON Cryptographic System. [Master\u2019s Thesis, University of Electronic Science and Technology of China]."},{"key":"ref_28","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/2535925","article-title":"On Ideal Lattices and Learning with Errors over Rings","volume":"60","author":"Lyubashevsky","year":"2013","journal-title":"J. ACM"},{"key":"ref_29","doi-asserted-by":"crossref","unstructured":"Pedrouzo-Ulloa, A., Troncoso-Pastoriza, J.R., Gama, N., Georgieva, M., and Perez-Gonzalez, F. (2021). Revisiting Multivariate Ring Learning with Errors and Its Applications on Lattice-Based Cryptography. Mathematics, 9.","DOI":"10.3390\/math9080858"},{"key":"ref_30","unstructured":"Camer, R., and Shoup, V. (May, January 28). Universal hash proofs and a paradigm for adaptive chosen ciphertext secure public-key encryption. Proceedings of the International Conference on the Theory and Applications of Cryptographic Techniques, Amsterdam, The Netherlands."},{"key":"ref_31","doi-asserted-by":"crossref","first-page":"714","DOI":"10.1007\/s00145-012-9133-6","article-title":"Round optimal password based authenticated key exchange","volume":"26","author":"Katz","year":"2013","journal-title":"J. Cryptol."},{"key":"ref_32","doi-asserted-by":"crossref","unstructured":"Benhamouda, F., Blazy, O., Chevalier, C., Pointcheval, D., and Vergnaud, D. (2013, January 18\u201322). New techniques for SPHFs and efficient one-round PAKE protocols. Proceedings of the Annual Cryptology Conference, Santa Barbara, CA, USA.","DOI":"10.1007\/978-3-642-40041-4_25"},{"key":"ref_33","first-page":"5","article-title":"Research on EPON Two-way Authenticated Encryption Scheme based on the MAC","volume":"6","author":"Yin","year":"2012","journal-title":"Int. J. Digit. Content Technol. Appl."}],"container-title":["Entropy"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/1099-4300\/27\/2\/135\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,8]],"date-time":"2025-10-08T10:37:22Z","timestamp":1759919842000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/1099-4300\/27\/2\/135"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,1,27]]},"references-count":33,"journal-issue":{"issue":"2","published-online":{"date-parts":[[2025,2]]}},"alternative-id":["e27020135"],"URL":"https:\/\/doi.org\/10.3390\/e27020135","relation":{},"ISSN":["1099-4300"],"issn-type":[{"type":"electronic","value":"1099-4300"}],"subject":[],"published":{"date-parts":[[2025,1,27]]}}}