Provably secure anonymous three-factor authentication scheme for multi-server environments

作者: Dongqing Xu , Jianhua Chen , Qin Liu

DOI: 10.1007/S12652-018-0710-X

关键词:

摘要: Significant developments in wireless communication technologies have resulted the increased popularity of mobile devices and services. However, excessive service requests reduce efficiency traditional single-server architectures, which consist one server many users. To overcome this limitation, a multi-server architecture was proposed. Additionally, password-based or smart-card-based authentication schemes cannot support some important security properties environments. Consequently, biometrics are widely used as third factor, addition to passwords smart cards, make more secure. Reddy et al. recently designed three-factor (i.e., password, card biometrics) scheme for we found that their lacks untraceability is vulnerable privileged insider attacks. address these deficiencies, propose security-enhanced environments based on elliptic curve cryptography (ECC). We prove proposed secure using random oracle model. Moreover, an informal analysis shows fulfills all requirements architecture. Finally, results from performance analyses indicate our achieves significant improvement with minimal impact performance.

参考文章(36)
Mijin Kim, Namje Park, Dongho Won, Security Weakness of a Dynamic ID-Based User Authentication Scheme with Key Agreement Springer, Dordrecht. pp. 687- 692 ,(2012) , 10.1007/978-94-007-5699-1_69
Hakhyun Kim, Woongryul Jeon, Kwangwoo Lee, Yunho Lee, Dongho Won, Cryptanalysis and improvement of a biometrics-based multi-server authentication with key agreement scheme international conference on computational science and its applications. pp. 391- 406 ,(2012) , 10.1007/978-3-642-31137-6_30
Hao Lin, Fengtong Wen, Chunxia Du, An Improved Anonymous Multi-Server Authenticated Key Agreement Scheme Using Smart Cards and Biometrics Wireless Personal Communications. ,vol. 84, pp. 2351- 2362 ,(2015) , 10.1007/S11277-015-2708-4
Thomas Eisenbarth, Timo Kasper, Amir Moradi, Christof Paar, Mahmoud Salmasizadeh, Mohammad T. Manzuri Shalmani, On the Power of Power Analysis in the Real World: A Complete Break of the KeeLoq Code Hopping Scheme international cryptology conference. pp. 203- 220 ,(2008) , 10.1007/978-3-540-85174-5_12
Vanga Odelu, Ashok Kumar Das, Adrijit Goswami, None, A Secure Biometrics-Based Multi-Server Authentication Protocol Using Smart Cards IEEE Transactions on Information Forensics and Security. ,vol. 10, pp. 1953- 1966 ,(2015) , 10.1109/TIFS.2015.2439964
Ming-Chin Chuang, Meng Chang Chen, An anonymous multi-server authenticated key agreement scheme based on trust computing using smart cards and biometrics Expert Systems With Applications. ,vol. 41, pp. 1411- 1418 ,(2014) , 10.1016/J.ESWA.2013.08.040
Xiang Cao, Sheng Zhong, Breaking a remote user authentication scheme for multi-server architecture IEEE Communications Letters. ,vol. 10, pp. 580- 581 ,(2006) , 10.1109/LCOMM.2006.1665116
Debiao He, Ding Wang, Robust Biometrics-Based Authentication Scheme for Multiserver Environment IEEE Systems Journal. ,vol. 9, pp. 816- 823 ,(2015) , 10.1109/JSYST.2014.2301517
Muhammad Khurram Khan, Soo-Kyun Kim, Khaled Alghathbar, Cryptanalysis and security enhancement of a 'more efficient & secure dynamic ID-based remote user authentication scheme' Computer Communications. ,vol. 34, pp. 305- 309 ,(2011) , 10.1016/J.COMCOM.2010.02.011