...
首页> 外文期刊>Multimedia Tools and Applications >Single round-trip SIP authentication scheme with provable security for Voice over Internet Protocol using smart card
【24h】

Single round-trip SIP authentication scheme with provable security for Voice over Internet Protocol using smart card

机译:单程SIP身份验证方案,可使用智能卡为Internet语音提供可验证的安全性

获取原文
获取原文并翻译 | 示例
           

摘要

In recent years, Voice over Internet Protocol (VoIP) has gained more and more popularity as an application of the Internet technology. For various IP applications including VoIP, the topic of Session Initiation Protocol (SIP) has attracted major concern from researchers. SIP is an advanced signaling protocol operating on Internet Telephony. SIP uses digest authentication protocols such as Simple Mail Transport Protocol (SMTP) and Hyper Text Transport Protocol (HTTP). When a user seeks SIP services, authentication plays an important role in providing secure access to the server only to the authorized access seekers. Being an insecure-channel-based protocol, a SIP authentication protocol is susceptible to adversarial threats. Therefore, security is a big concern in SIP authentication mechanisms. This paper reveals the security vulnerabilities of two recently proposed SIP authentication schemes for VoIP, Irshad et al.' s scheme [Multimed. Tools. Appl. doi: 10.1007/s11042-0131807- z] and Arshad and Nikooghadam's scheme [Multimed. Tools. Appl. DOI 10.1007/ s11042-014-2282-x], the later scheme is based on the former scheme. Irshad et al.' s scheme suffers from password guessing, user impersonation and server spoofing attacks. Arshad and Nikooghadam's scheme can be threatened with server spoofing and stolen verifier attack. None of these two schemes achieve mutual authentication. It also fails to follow the single round-trip authentication design of Irshad et al.' s scheme. To overcome these weaknesses, we propose a provable secure single round-trip SIP authentication scheme for VoIP using smart card. We formally prove the security of the scheme in random oracle and demonstrate through discussion its resistance to various attacks. The comparative analysis shows that the proposed SIP authentication scheme offers superior performance with a little extra computational cost.
机译:近年来,作为互联网技术的应用,互联网协议语音(VoIP)越来越受到欢迎。对于包括VoIP在内的各种IP应用,会话发起协议(SIP)的主题引起了研究人员的广泛关注。 SIP是在Internet电话上运行的高级信令协议。 SIP使用摘要身份验证协议,例如简单邮件传输协议(SMTP)和超文本传输​​协议(HTTP)。当用户寻求SIP服务时,身份验证在仅向授权访问者提供对服务器的安全访问中起着重要作用。作为一种基于不安全通道的协议,SIP身份验证协议容易受到对抗性威胁。因此,安全性是SIP身份验证机制中的一大关注点。本文揭示了两个最近为VoIP提出的SIP身份验证方案的安全漏洞,Irshad等人。 s方案[Multimed。工具。应用doi:10.1007 / s11042-0131807-z]和Arshad和Nikooghadam的方案[Multimed。工具。应用[DOI 10.1007 / s11042-014-2282-x],后一种方案基于前一种方案。 Irshad等人。 s方案遭受密码猜测,用户模拟和服务器欺骗攻击。 Arshad和Nikooghadam的方案可能受到服务器欺骗和验证程序被盗攻击的威胁。这两种方案均未实现相互认证。它也没有遵循Irshad等人的单次往返身份验证设计。的方案。为了克服这些弱点,我们提出了一种可证明的使用智能卡的VoIP安全单往返SIP身份验证方案。我们在随机预言机中正式证明了该方案的安全性,并通过讨论证明了其对各种攻击的抵抗力。比较分析表明,所提出的SIP身份验证方案提供了卓越的性能,而额外的计算成本却很少。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号