首页> 外文会议>International workshop on security protocols >How to Speak an Authentication Secret Securely from an Eavesdropper
【24h】

How to Speak an Authentication Secret Securely from an Eavesdropper

机译:如何从窃听者安全地说出身份验证秘密

获取原文

摘要

When authenticating over the telephone or mobile headphone, the user cannot always assure that no eavesdropper hears the password or authentication secret. We describe an eavesdropper-resistant, challenge-response authentication scheme for spoken authentication where an attacker can hear the user's voiced responses. This scheme entails the user to memorize a small number of plaintext-ciphertext pairs. At authentication, these are challenged in random order and interspersed with camouflage elements. It is shown that the response can be made to appear random so that no information on the memorized secret can be learned by eavesdroppers. We describe the method along with parameter value tradeoffs of security strength, authentication time, and memory effort. This scheme was designed for user authentication of wireless headsets used for hands-free communication by healthcare staff at a hospital.
机译:通过电话或移动耳机进行身份验证时,用户无法始终确保没有任何窃听者听到密码或身份验证密钥。我们描述了一种针对语音身份验证的防窃听,质询-响应身份验证方案,攻击者可以在其中听到用户的语音响应。该方案需要用户记住少量的明文-密文对。在身份验证时,它们会以随机顺序受到挑战,并散布着迷彩元素。结果表明,可以使响应看起来是随机的,因此窃听者无法获悉有关所存储秘密的信息。我们描述了该方法以及安全强度,身份验证时间和内存工作量的参数值折衷。此方案旨在对医院医护人员进行免提通信的无线耳机的用户身份验证。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号