检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
机构地区:[1]四川大学信息安全研究所,四川成都610064
出 处:《信息与电子工程》2009年第2期156-158,167,共4页information and electronic engineering
摘 要:通过改进鉴别方案的安全策略和身份鉴别信息,提出了一种基于USB Key的可有效对抗离线口令猜测攻击和内部攻击的改进方案。安全性分析表明,改进后的方案保持了非存储数据型鉴别方案特点,且没有增加计算代价,具有更好的安全性和实用性。Yen-Cheng Chen et al. proposed an efficient nonce-based authentication scheme with key agreement in 2005. However, this authentication scheme has been found to be vulnerable to power analysis attack, off-line password guessing attack and internal attack. To solve this problem, an improved USB-Key-based authentication scheme is proposed, which can withstand the off-line password guessing attack and internal attack by means of improving the security policy and authentication information. The security analysis shows that the improved scheme still keeps the features of the non-storage data model authentication scheme and will not add the additional computation cost to the smart card. It will perform better in security and practical operations.
关 键 词:电子钥匙 鉴别 离线口令猜测攻击 内部攻击 密钥协商
分 类 号:TN915.08[电子电信—通信与信息系统] TP393.08[电子电信—信息与通信工程]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.222