首页> 外文期刊>IEEE transactions on information forensics and security >Comments on “Revocable and Scalable Certificateless Remote Authentication Protocol With Anonymity for Wireless Body Area Networks”
【24h】

Comments on “Revocable and Scalable Certificateless Remote Authentication Protocol With Anonymity for Wireless Body Area Networks”

机译:关于“无线人体局域网具有匿名性的可撤消和可扩展的无证书远程身份验证协议”的评论

获取原文
获取原文并翻译 | 示例

摘要

To solve security and privacy issues in wireless body area networks, several types of digital signature schemes have been adapted to a number of authentication protocols. Recently in IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY (TIFS) (DOI: 10.1109/TIFS.2015.2414399), Xiong and Qin proposed a revocable certificateless encryption (R-CLE) scheme against decryption key exposure, and a revocable certificateless signature (R-CLS) scheme against signing key exposure. Then they proposed a revocable and scalable certificateless remote authentication protocol with anonymity for wireless body area networks based on the combination of R-CLE scheme and R-CLS scheme. However, we show that their RCLS scheme is insecure against type I adversaries: a type I adversary who knows only a user's secret value can forge signatures on any messages in the same time period. Hence, their authentication protocol fails to meet the claimed security requirements.
机译:为了解决无线人体局域网中的安全性和隐私问题,几种类型的数字签名方案已适应多种身份验证协议。 Xiong和Qin最近在IEEE信息取证与安全交易(TIFS)(DOI:10.1109 / TIFS.2015.2414399)中提出了针对解密密钥暴露的可撤销无证书加密(R-CLE)方案和可撤销无证书签名(R-CLS) )计划以防止密钥泄露。然后,他们基于R-CLE方案和R-CLS方案的组合,为无线人体局域网提出了一种具有匿名性的可撤消且可扩展的无证书远程认证协议。但是,我们证明了他们的RCLS方案对类型I的对手是不安全的:仅知道用户的秘密值的I类对手可以在同一时间对任何消息伪造签名。因此,他们的身份验证协议无法满足要求的安全性要求。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号