首页> 外文期刊>Communications, China >Cryptanalysis of two dynamic identity based authentication schemes for multi-server architecture
【24h】

Cryptanalysis of two dynamic identity based authentication schemes for multi-server architecture

机译:密码分析两种基于多服务器架构的动态身份验证方案

获取原文
获取原文并翻译 | 示例
           

摘要

Since network services are provided cooperatively by multiple servers in the Internet, the authentication protocols for multiserver architecture are required by Internet-based services, such as online game, online trade and so on. Recently, Li et al. analyzed Lee et al.'s protocol and proposed an improved dynamic identity based authentication protocol for multi-server architecture. They claimed that their protocol provides user's anonymity, mutual authentication and the session key agreement against several kinds of attacks. In this paper, a cryptanalysis on Lee et al.'s scheme shows that Lee et al.'s protocol is also vulnerable to malicious server attack, stolen smart card attack and leak-of-verifier attack. Moreover, Li et al.'s improved protocol is also vulnerable to all these attacks. Further cryptanalysis reveals that Li et al.'s improved protocol is susceptible to collusion attack.
机译:由于网络服务是由Internet中的多个服务器协同提供的,因此基于Internet的服务(例如,在线游戏,在线交易等)需要用于多服务器体系结构的身份验证协议。最近,李等人。分析了Lee等人的协议,并提出了一种针对多服务器体系结构的改进的基于动态身份的身份验证协议。他们声称他们的协议提供了用户的匿名性,相互认证以及针对几种攻击的会话密钥协议。在本文中,对Lee等人的方案进行的加密分析表明,Lee等人的协议还容易受到恶意服务器攻击,被盗的智能卡攻击和验证者泄漏攻击的攻击。而且,Li等人的改进协议也容易受到所有这些攻击。进一步的密码分析表明,Li等人的改进协议容易受到共谋攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号