首页> 外文期刊>Multimedia Tools and Applications >A lightweight authentication and key agreement protocol preserving user anonymity
【24h】

A lightweight authentication and key agreement protocol preserving user anonymity

机译:轻便的身份验证和密钥协商协议,可保持用户匿名

获取原文
获取原文并翻译 | 示例
           

摘要

Nowadays with widespread employment of the Internet, servers provide various services for legal users. The vital issue in client/server connections is authentication protocols that make the communication channel safe and secure against famous attacks. Recently, Kumari et al. and Chaudhry et al. proposed two authentication and key agreement protocols and illustrated that their proposed protocols are secure against various security attacks. However, in this paper we demonstrate that both protocols are vulnerable to off-line password guessing attacks. Moreover, we show that Kumari et al.'s protocol does not provide the property of user anonymity. In order to overcome these weaknesses, we propose a lightweight authentication and key agreement protocol. The correctness of the proposed protocol is proved using BAN logic. Security analysis demonstrates that the proposed protocol resists various security attacks and provides user anonymity. Furthermore, performance analysis confirms that the computation cost of the proposed protocol is acceptable.
机译:如今,随着Internet的广泛使用,服务器为合法用户提供了各种服务。客户端/服务器连接中的关键问题是身份验证协议,该协议使通信通道安全可靠,免受著名攻击。最近,Kumari等。和Chaudhry等。提出了两种认证和密钥协商协议,并说明了它们提出的协议可抵抗各种安全攻击。但是,在本文中,我们证明了这两种协议都容易受到离线密码猜测攻击的攻击。此外,我们表明Kumari等人的协议不提供用户匿名性。为了克服这些弱点,我们提出了一种轻量级的身份验证和密钥协商协议。使用BAN逻辑证明了所提出协议的正确性。安全分析表明,所提出的协议可以抵抗各种安全攻击并提供用户匿名性。此外,性能分析证实了所提出协议的计算成本是可以接受的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号