首页> 外文会议>Second IEEE International Conference on Social Computing >A Secure Smart-Card-based Password Authenticated Key Agreement Scheme in Multi-server Environments
【24h】

A Secure Smart-Card-based Password Authenticated Key Agreement Scheme in Multi-server Environments

机译:多服务器环境中基于安全智能卡的密码验证密钥协商方案

获取原文

摘要

Remote user authentication is used to validate the legitimacy of a remote log-in user. Due to the rapid growth of computer community, many network architectures are becoming multi-server based. Recently, there have been many remote password authentication schemes proposed for securing multi-server environments. These schemes used either a nonce or a timestamp technique to prevent the replay attack. However, using the nonce technique to withstand the replay attack is potentially susceptible to the man-in-the-middle attack. Alternatively, when employing the timestamp method to secure remote password authentication, it will encounter the difficulty of implementing time synchronization. In order to solve both the above two issues, this paper proposes a self-verified timestamp technique to not only securely achieve password authenticated key agreement but also avoid the difficulty of implementing time synchronization in multi-server environments. On the other hand, the function of service period management can allow servers to update the list of illegal users easily and periodically. Therefore, we also further develop the scheme of service period management in this paper.
机译:远程用户身份验证用于验证远程登录用户的合法性。由于计算机社区的快速增长,许多网络体系结构都变得基于多服务器。近来,已经提出了许多用于保护多服务器环境的远程口令认证方案。这些方案使用随机数或时间戳技术来防止重放攻击。但是,使用随机数技术抵御重放攻击可能会受到中间人攻击。或者,当采用时间戳方法来保护远程密码认证时,将遇到实现时间同步的困难。为了解决以上两个问题,本文提出了一种自验证时间戳技术,不仅可以安全地实现密码认证的密钥协商,而且还避免了在多服务器环境中实现时间同步的困难。另一方面,服务期限管理功能可以使服务器轻松,定期地更新非法用户列表。因此,本文还进一步开发了服务期管理方案。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号