...
首页> 外文期刊>Multimedia Tools and Applications >A secure biometric based multi-server authentication scheme for social multimedia networks
【24h】

A secure biometric based multi-server authentication scheme for social multimedia networks

机译:用于社交多媒体网络的基于安全生物特征的多服务器身份验证方案

获取原文
获取原文并翻译 | 示例

摘要

Social networking is one of the major source of massive data. Such data is not only difficult to store, manipulate and maintain but it's open access makes it security prone. Therefore, robust and efficient authentication should be devised to make it invincible against the known security attacks. Moreover, social networking services are intrinsically multi-server environments, therefore compatible and suitable authentication should be designed accordingly. Sundry authentication protocols are being utilized at the moment and many of them are designed for single server architecture. This type of remote architecture resists each user to get itself register with each server if multiple servers are employed to offer online social services. Recently multi-server architecture for authentication has replaced the single server architecture, and it enable users to register once and procure services from multiple servers. A short time ago, Lu et al. presented two authentication schemes based on three factors. Furthermore, both Lu et al.'s schemes are designed for multi-server architecture. Lu et al. claimed the schemes to be invincible against the known attacks. However, this paper shows that one of the Lu et al.'s scheme is susceptible to user anonymity violation and impersonation attacks, whereas Lu et al.'s second scheme is susceptible to user impersonation attack. Therefore an enhanced scheme is introduced in this paper. The proposed scheme is more robust than subsisting schemes. The proposed scheme is thoroughly verified and validated with formal and informal security discussion, and through the popular automated tool ProVerif. The in-depth analysis affirms that proposed scheme is lightweight in terms of computations while attaining mutual authentication and is invincible against the known attacks, hence is more suitable for automated big data analysis for social multimedia networking environments.
机译:社交网络是海量数据的主要来源之一。此类数据不仅难以存储,操纵和维护,而且其开放式访问使其易于产生安全性。因此,应该设计出强大而有效的身份验证,使其对已知的安全攻击无敌。此外,社交网络服务本质上是多服务器环境,因此应相应设计兼容和适当的身份验证。目前正在使用各种各样的身份验证协议,其中许多协议是为单服务器体系结构设计的。如果使用多个服务器来提供在线社交服务,则这种远程体系结构会阻止每个用户向每个服务器注册自己。最近,用于身份验证的多服务器体系结构已经取代了单服务器体系结构,它使用户能够一次注册并从多台服务器获得服务。不久前,Lu等人。提出了基于三个因素的两种认证方案。此外,Lu等人的两种方案都是针对多服务器体系结构设计的。 Lu等。声称该方案对已知攻击无敌。但是,本文表明,Lu等人的一种方案容易受到用户匿名攻击和假冒攻击,而Lu等人的第二种方案却易于受到用户假冒攻击。因此,本文提出了一种增强方案。所提出的方案比现有方案更健壮。通过正式和非正式的安全讨论,以及通过流行的自动化工具ProVerif,对提出的方案进行了彻底的验证。深入分析证实,该方案在计算上轻量级,同时获得了相互认证,并且对已知攻击无敌,因此更适合用于社交多媒体网络环境的自动化大数据分析。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号