首页> 外文会议>Ubiquitous information technologies and applications >Cloud Authentication Based on Anonymous One-Time Password
【24h】

Cloud Authentication Based on Anonymous One-Time Password

机译:基于匿名一次性密码的云认证

获取原文
获取原文并翻译 | 示例

摘要

Cloud computing contains many enterprise applications that require from each user to perform authenticate at first step. Then, he will gain a permit from the service provider to access resources at second step. The issue breach remains facing a modern computing model. A more secure scheme is the two-factor authentication (2FA) that requires a second factor (such as finger print, token) with username/password. Nevertheless, the feasibility of 2FA is largely limited by high device cost, malicious attack and the deployment complexity. In this paper, we propose a scheme of 2FA in cloud computing systems that depends on One-Time Password (OTP), Asymmetric Scalar-product Preserving Encryption (ASPE) and RSA digital signature as two factors. Furthermore, it overcomes aforementioned issues and does not require extra devices such as token device, card reader in smart card and scanner in physiological biometrics. The proposed scheme distinguishes to resist practical attacks, high-security level, anonymous password, mutual authentication, identity management, the cloud server and a user can establish authenticated session keys, reduces the cost, and good performance.
机译:云计算包含许多企业应用程序,要求每个用户在第一步执行身份验证。然后,他将从服务提供商处获得第二步访问资源的许可。违规问题仍然面临着现代计算模型。更加安全的方案是两要素身份验证(2FA),它要求使用用户名/密码的第二要素(例如指纹,令牌)。但是,2FA的可行性在很大程度上受到设备成本高,恶意攻击和部署复杂性的限制。在本文中,我们提出了一种基于一次性密码(OTP),非对称标量产品保存加密(ASPE)和RSA数字签名作为两个因素的云计算系统2FA方案。此外,它克服了上述问题,并且不需要额外的设备,例如令牌设备,智能卡中的读卡器以及生理生物特征中的扫描仪。所提出的方案具有抵抗实际攻击,高安全级别,匿名密码,相互认证,身份管理的优势,云服务器和用户可以建立经过认证的会话密钥,从而降低了成本,并具有良好的性能。

著录项

  • 来源
  • 会议地点
  • 作者单位

    Services Computing Technology and System Lab, Cluster and Grid Computing Lab, School of Computer Science and Technology, Huazhong University of Science and Technology,Wuhan 430074, China;

    Services Computing Technology and System Lab, Cluster and Grid Computing Lab, School of Computer Science and Technology, Huazhong University of Science and Technology,Wuhan 430074, China;

    Services Computing Technology and System Lab, Cluster and Grid Computing Lab, School of Computer Science and Technology, Huazhong University of Science and Technology,Wuhan 430074, China;

    Services Computing Technology and System Lab, Cluster and Grid Computing Lab, School of Computer Science and Technology, Huazhong University of Science and Technology,Wuhan 430074, China;

    Services Computing Technology and System Lab, Cluster and Grid Computing Lab, School of Computer Science and Technology, Huazhong University of Science and Technology,Wuhan 430074, China;

  • 会议组织
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    cloud authentication; one-time password; security attacks; mutual authentication;

    机译:云认证;一次性密码;安全攻击;相互认证;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号