首页> 美国卫生研究院文献>other >An Enhanced Biometric Based Authentication with Key-Agreement Protocol for Multi-Server Architecture Based on Elliptic Curve Cryptography
【2h】

An Enhanced Biometric Based Authentication with Key-Agreement Protocol for Multi-Server Architecture Based on Elliptic Curve Cryptography

机译:基于椭圆曲线密码的多服务器体系结构基于密钥协议的增强型生物特征认证

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

Biometric based authentication protocols for multi-server architectures have gained momentum in recent times due to advancements in wireless technologies and associated constraints. Lu et al. recently proposed a robust biometric based authentication with key agreement protocol for a multi-server environment using smart cards. They claimed that their protocol is efficient and resistant to prominent security attacks. The careful investigation of this paper proves that Lu et al.’s protocol does not provide user anonymity, perfect forward secrecy and is susceptible to server and user impersonation attacks, man-in-middle attacks and clock synchronization problems. In addition, this paper proposes an enhanced biometric based authentication with key-agreement protocol for multi-server architecture based on elliptic curve cryptography using smartcards. We proved that the proposed protocol achieves mutual authentication using Burrows-Abadi-Needham (BAN) logic. The formal security of the proposed protocol is verified using the AVISPA (Automated Validation of Internet Security Protocols and Applications) tool to show that our protocol can withstand active and passive attacks. The formal and informal security analyses and performance analysis demonstrates that the proposed protocol is robust and efficient compared to Lu et al.’s protocol and existing similar protocols.
机译:由于无线技术的发展和相关限制,用于多服务器体系结构的基于生物特征的身份验证协议近来得到了发展。 Lu等。最近,有人针对使用智能卡的多服务器环境提出了一种基于健壮的,具有密钥协商协议的,基于生物特征的身份验证方法。他们声称他们的协议是有效的并且可以抵抗突出的安全攻击。对本文的仔细研究证明,Lu等人的协议不能提供用户匿名性,完美的前向保密性,并且容易受到服务器和用户假冒攻击,中间人攻击和时钟同步问题的影响。此外,本文针对基于智能卡的椭圆曲线密码学的多服务器体系结构,提出了一种基于密钥协商协议的基于生物特征的增强身份验证方法。我们证明了所提出的协议使用Burrows-Abadi-Needham(BAN)逻辑实现了相互认证。使用AVISPA(Internet安全协议和应用程序的自动验证)工具验证了所提议协议的形式安全性,以表明我们的协议可以抵抗主动和被动攻击。正式和非正式的安全性分析以及性能分析表明,与Lu等人的协议和现有类似协议相比,该协议是可靠且高效的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号