首页> 外文期刊>Journal of network and computer applications >Cryptanalysis and improvement of a biometrics-based remote user authentication scheme using smart cards
【24h】

Cryptanalysis and improvement of a biometrics-based remote user authentication scheme using smart cards

机译:密码分析和使用智能卡的基于生物识别的远程用户身份验证方案的改进

获取原文
获取原文并翻译 | 示例

摘要

Recently, Li and Hwang proposed a biometrics-based remote user authentication scheme using smart cards [Journal of Network and Computer Applications 33 (2010) 1-5], The scheme is based on biometrics verification, smart card and one-way hash function, and it uses the nonce rather than a synchronized clock, so it is very efficient in computational cost Unfortunately, the scheme has some security weaknesses, that is to say Li and Hwang's scheme does not provide proper authentication and it cannot resist the man-in- : the-middle attacks. If an attacker controls the insecure channel, she/he can easily fabricate messages to pass the user's or server's authentication. Besides, the malicious attacker can impersonate the user to cheat the server and can impersonate the server to cheat the user without knowing any secret information. This paper proposes an improved biometrics-based remote user authentication scheme that removes the aforementioned weaknesses and supports session key agreement.
机译:最近,Li和Hwang提出了一种使用智能卡的基于生物特征的远程用户身份验证方案[网络与计算机应用学报33(2010)1-5],该方案基于生物特征验证,智能卡和单向哈希函数,并且它使用随机数而不是同步时钟,因此它在计算成本上非常有效。不幸的是,该方案存在一些安全漏洞,也就是说,Li and Hwang的方案未提供适当的身份验证,并且无法抵抗人工干预。 :中间攻击。如果攻击者控制了不安全的通道,则他/他可以轻松地构造消息以通过用户或服务器的身份验证。此外,恶意攻击者可以冒充用户欺骗服务器,并且可以冒充服务器欺骗用户而无需知道任何秘密信息。本文提出了一种改进的基于生物特征的远程用户身份验证方案,该方案消除了上述缺点并支持会话密钥协议。

著录项

  • 来源
    《Journal of network and computer applications》 |2011年第1期|p.73-79|共7页
  • 作者单位

    State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing 100876, China;

    rnState Key Laboratory of Software Development Environment, Beihang University, Beijing 100191, China;

    rnState Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing 100876, China;

    rnState Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing 100876, China;

    rnDepartment of Mathematics and Computer Science, Fuqing Branch of Fujian Normal University, Fuqing 350300, China;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    cryptanalysis; biometrics; authentication; smart card; security;

    机译:密码分析生物识别;认证;智能卡;安全;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号