首页> 外文会议>2nd International Conference on Information Technology and Electronic Commerce >Cryptanalysis and improvement of a SIP authentication scheme
【24h】

Cryptanalysis and improvement of a SIP authentication scheme

机译:密码分析和SIP身份验证方案的改进

获取原文
获取原文并翻译 | 示例
获取外文期刊封面目录资料

摘要

SIP (Session Initial Protocol) has been a very popular protocol for VoIP. However, the authentication of this protocol just derives from HTTP digest authentication, which has been demonstrated insecure in the open network. Recently, Arshad et al. proposed an improved mutual authentication scheme based on ECC and claimed that it's secure enough. In this paper, however, we point out that their protocol still could not resist offline password guessing attacks. Furthermore, we propose an ECC-based mutual authentication and key agreement scheme to overcome such a security problem. Also, an analysis of it is provided to indicate that compared to Arshad et al.'s scheme, this scheme reduces twice hash operation and is more secure with reasonable computation cost.
机译:SIP(会话初始协议)已成为VoIP非常流行的协议。但是,此协议的身份验证仅来自HTTP摘要身份验证,这已在开放网络中证明是不安全的。最近,Arshad等人。提出了一种改进的基于ECC的双向身份验证方案,并声称它足够安全。但是,在本文中,我们指出他们的协议仍然无法抵抗离线密码猜测攻击。此外,我们提出了一种基于ECC的相互认证和密钥协商方案来克服这种安全问题。而且,提供了对它的分析以表明与Arshad等人的方案相比,该方案减少了两次哈希运算,并且以合理的计算成本更加安全。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号