基于生物特征和口令的双因子认证与密钥协商协议  被引量:15

Two-factor authenticated key agreement protocol based on biometric feature and password

在线阅读下载全文

作  者:李晓伟 杨邓奇 陈本辉[1,2] 张玉清[3] LI Xiao-wei;YANG Deng-qi;CHEN Ben-hui;ZHANG Yu-qing(Department of Mathematics and Computer Science, Dali University, Dali 671000, China;State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing 100049, China;National Computer Network Intrusion Protection Center, University of Chinese Academy of Sciences, Beijing 100049, China)

机构地区:[1]大理大学数学与计算机学院,云南大理671000 [2]北京邮电大学网络与交换技术国家重点实验室,北京100049 [3]中国科学院大学国家计算机网络入侵防范中心,北京100049

出  处:《通信学报》2017年第7期89-95,共7页Journal on Communications

基  金:国家自然科学基金资助项目(No.61462003;No.71462001;No.61272481;No.61572460);国家重点研究与发展基金资助项目(No.2016YFB0800703);网络与交换技术国家重点实验室开放课题基金资助项目(No.SLNST-2016-2-25);云南省教育厅基金资助项目(No.2016ZZX192)~~

摘  要:提出了一个新型的基于生物特征和口令的双因子认证与密钥协商协议。该双因子协议利用用户的生物特征以及口令信息实现安全通信,用户不需要携带智能卡。利用模糊提取技术,服务器不再保存用户生物信息,避免了服务器被攻陷用户敏感信息丢失的风险。通过服务器的公钥保护用户的认证信息,避免了基于口令的认证协议可能遭受的离线字典攻击。基于椭圆曲线计算性Diffie-Hellman假设,在随机预言模型下证明了协议的安全性。性能分析表明,所提出的协议具有较高的安全属性。A new two-factor authenticated key agreement protocol based on biometric feature and password was proposed.The protocol took advantages of the user’s biological information and password to achieve the secure communication without bringing the smart card.The biometric feature was not stored in the server by using the fuzzy extractor technique,so the sensitive information of the user cannot be leaked when the server was corrupted.The authentication messages of the user were protected by the server’s public key,so the protocol can resist the off-line dictionary attack which often appears in the authentication protocols based on password.The security of the proposed protocol was given in the random oracle model provided the elliptic computational Diffie-Hellman assumption holds.The performance analysis shows the proposed protocol has better security.

关 键 词:认证与密钥协商 生物认证 口令 随机预言模型 

分 类 号:TP309[自动化与计算机技术—计算机系统结构]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象