基于动态ID的远程认证方案的改进  被引量:2

Improved security enhancement for a dynamic ID-based remote user authentication scheme

在线阅读下载全文

作  者:段晓毅[1] 张其善[1] 刘建伟[1] 

机构地区:[1]北京航空航天大学电子信息工程学院,北京100083

出  处:《北京航空航天大学学报》2007年第5期565-567,621,共4页Journal of Beijing University of Aeronautics and Astronautics

基  金:国家自然科学基金资助项目(60672102)

摘  要:智能卡由于具有低功耗、安全计算和便携性的特点,常常被用做身份认证终端.基于静态口令的认证方案不能由用户选择密钥并且需要在服务器保存一个密钥表,而基于动态ID的方案能解决这些问题.提出了新的方案,指出Liao-Lee-Hwang方案中不能抗偷窃攻击的缺点,并在其基础上做了改进.新的改进方案不仅继承了原方案中抗猜测攻击、实现共同认证、服务器不会泄露用户密钥的的优点,同时也避免了窃取攻击;并且新的改进方案在计算量上也小于Liao-Lee-Hwang的方案.Smart cards are secure, compact and intelligent data carriers, which can offers strong authentication and guaranteed non- repudiation. With the traditional authentication solution, the static password is rarely altered and maintained in the verifier table on the server. This is bringing forth the important attacks of replay attacks, guessing attacks, modication attacks, and stolen-verier attacks. However, the dynamic IDbased authentication solution can solve the problem. I-En Liao et al proposed a dynamic ID-based user authentication scheme using smart cards. The scheme has a lot of advantages, such as avoiding a variety of attacks, mutual authentication and no verifier table, but it can't resist to stolen attack. A improved scheme was presented to remedy their weaknesses. Compare with Liao-Lee-Hwang's scheme, the improved scheme not only avoid stolen attacks but also reduce the computational costs.

关 键 词:认证 智能卡 密钥 偷窃攻击 

分 类 号:TN918[电子电信—通信与信息系统]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象