首页> 外文会议>International Conference on Biometrics >BioSAKE: Biometrics-based secure authentication and key exchange
【24h】

BioSAKE: Biometrics-based secure authentication and key exchange

机译:BioSAKE:基于生物特征的安全认证和密钥交换

获取原文

摘要

Biometric authentication is yet to find widespread acceptance in applications requiring authentication between a remote client and server (e.g., electronic commerce). This is partly because the biometric authentication process can be circumvented through attacks on the communication interfaces or on the stored biometric templates. In this paper, we propose a biometrics-based protocol for secure authentication and key exchange between a client and a server. The proposed BioSAKE protocol is based on key-binding biometric cryptosystems and satisfies the following requirements: (i) mutual authentication between the client and the server, (ii) secure exchange of a session key between the two entities, (iii) minimal leakage of biometric information from stored credentials, and (iv) revocability of stored credentials. A detailed security analysis of the BioSAKE protocol has also been presented. Experiments on public-domain fingerprint and iris databases demonstrate the practical feasibility of the BioSAKE protocol.
机译:在需要在远程客户端和服务器之间进行认证的应用中(例如,电子商务),生物特征认证尚未得到广泛接受。部分原因是可以通过对通信接口或存储的生物特征模板的攻击来规避生物特征认证过程。在本文中,我们提出了一种基于生物识别的协议,用于客户端和服务器之间的安全身份验证和密钥交换。拟议的BioSAKE协议基于密钥绑定生物识别密码系统,并满足以下要求:(i)客户端和服务器之间的相互身份验证;(ii)两个实体之间安全地交换会话密钥;(iii)最小程度的泄漏来自存储凭证的生物特征信息,以及(iv)存储凭证的可撤销性。还介绍了BioSAKE协议的详细安全性分析。在公共领域的指纹和虹膜数据库上进行的实验证明了BioSAKE协议的实际可行性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号