首页> 外文会议>International Conference on Applied Human Factors and Ergonomics >Cryptanalysis and Improvement of an Advanced Anonymous and Biometrics-Based Multi-server Authentication Scheme Using Smart Cards
【24h】

Cryptanalysis and Improvement of an Advanced Anonymous and Biometrics-Based Multi-server Authentication Scheme Using Smart Cards

机译:使用智能卡的加密和改进先进的匿名和生物识别的多服务器认证方案

获取原文

摘要

In conventional single-server environment, a user must register to every server if he/she wants to access numerous network services. It is exceedingly hard for users to generate different robust passwords and remember them with corresponding identities. To solve this problem, many multi-server authentication schemes have been proposed in recent years. In 2017, Chang et al. improved Chuang and Chen's scheme, arguing that their scheme provides higher security and practicability. However, we demonstrate that Chang et al.'s scheme is still vulnerable to outsider attack and session key derived attack. In addition, we also find that both malicious user and server can carry out user impersonation attack in their scheme. In this paper, we propose a new biometrics-based authentication scheme that is suitable for use in multi-server environment. Finally, we show that the proposed scheme improves on the level of security in comparison with related schemes.
机译:在传统的单服务器环境中,如果他/她想要访问众多网络服务,用户必须注册到每个服务器。用户非常努力地生成不同的强大密码,并记住它们具有相应的身份。为了解决这个问题,近年来提出了许多多服务器认证方案。 2017年,昌等人。改善庄和陈的计划,争论他们的计划提供更高的安全性和实用性。但是,我们展示了嫦娥.的计划仍然容易受到局外攻击和会话关键派生攻击的影响。此外,我们还发现,恶意用户和服务器都可以在其方案中进行用户模拟攻击。在本文中,我们提出了一种新的基于生物识别的身份验证方案,适用于多服务器环境。最后,我们表明,与相关方案相比,拟议的方案提高了安全水平。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号