首页> 外文会议>International Conference on Advanced Science and Engineering >A New Initial Authentication Scheme for Kerberos 5 Based on Biometric Data and Virtual Password
【24h】

A New Initial Authentication Scheme for Kerberos 5 Based on Biometric Data and Virtual Password

机译:基于生物识别数据和虚拟密码的Kerberos 5的新初始认证方案

获取原文
获取外文期刊封面目录资料

摘要

Kerberos is a third party and widely used authentication protocol, in which it enables computers to connect securely using a single sign-on over an insecure channel. It proves the identity of clients and encrypts all the communications between them to ensure data privacy and integrity. Typically, Kerberos composes of three communication phases to establish a secure session between any two clients. The authentication is based on a password-based scheme, in which it is a secret long-term key shared between the client and the Kerberos. Therefore, Kerberos suffers from a password-guessing attack, the main drawback of Kerberos. In this paper, we overcome this limitation by modifying the first initial phase using the virtual password and biometric data. In addition, the proposed protocol provides a strong authentication scenario against multiple types of attacks.
机译:Kerberos是一个第三方和广泛使用的认证协议,其中它使计算机能够在不安全的通道上使用单点登录安全地连接。它证明了客户的身份,并加密它们之间的所有通信,以确保数据隐私和完整性。通常,Kerberos组成三个通信阶段,以在任何两个客户端之间建立安全会话。认证基于基于密码的方案,其中它是客户端和Kerberos之间共享的秘密长期密钥。因此,Kerberos遭受了密码猜测攻击,是Kerberos的主要缺点。在本文中,我们通过使用虚拟密码和生物识别数据来修改第一初始阶段来克服此限制。此外,所提出的协议提供了针对多种类型攻击的强大认证方案。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号