...
首页> 外文期刊>Security and Communications Networks >An efficient biometric-based privacy-preserving three-party authentication with key agreement protocol using smart cards
【24h】

An efficient biometric-based privacy-preserving three-party authentication with key agreement protocol using smart cards

机译:使用智能卡通过密钥协议协议进行基于生物特征的高效隐私保护三方身份验证

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

In communication systems, authentication protocols play an important role in protecting sensitive information against a malicious adversary by means of providing a variety of services such as mutual authentication, user credentials' privacy, and user revocation facility when the smart card of the user is lost/stolen or user's authentication parameters are revealed. Recently, several three-party authentication with key agreement (3PAKA) schemes are proposed in the literature, but most of them do not provide the basic security requirements such as user anonymity as well as user revocation and reregistration with the same identity. Thus, we feel that there is a great need to design a secure 3PAKA scheme with these security properties. In this paper, we propose a new secure biometric-based privacy-preserving 3PAKA scheme using the elliptic curve cryptography with efficient mechanism for the user revocation and re-registration with the same identity. The formal security analysis using the widely accepted Burrows-Abadi-Needham logic shows that our scheme provides secure authentication. In addition, we simulate our scheme for the formal security verification using the widely accepted Automated Validation of Internet Security Protocols and Applications tool. The simulation results show that our scheme is secure against passive and active attacks. Furthermore, our scheme is efficient as compared with other related schemes. Our scheme provides high security along with low computation and communication costs, and extra features as compared with other related existing schemes in the literature, and as a result, our scheme is suitable for battery-limited mobile devices. Copyright (C) 2015 John Wiley & Sons, Ltd.
机译:在通信系统中,身份验证协议通过在用户的智能卡丢失/丢失时提供多种服务(例如相互身份验证,用户凭据的隐私和用户撤销功能),在保护敏感信息免受恶意攻击者方面发挥重要作用。被盗或用户的身份验证参数被泄露。最近,文献中提出了几种具有密钥协商的三方身份验证(3PAKA)方案,但是大多数方案都没有提供基本的安全要求,例如用户匿名以及具有相同身份的用户吊销和重新注册。因此,我们感到非常需要设计一种具有这些安全属性的安全3PAKA方案。在本文中,我们提出了一种新的基于生物特征的安全保密的3PAKA方案,该方案使用具有有效身份的椭圆曲线密码学用于用户撤销和重新注册具有相同标识的机制。使用广泛接受的Burrows-Abadi-Needham逻辑进行的正式安全分析表明,我们的方案提供了安全的身份验证。此外,我们使用广泛接受的Internet安全协议和应用程序自动验证工具模拟用于正式安全验证的方案。仿真结果表明,我们的方案能够抵御被动和主动攻击。此外,与其他相关方案相比,我们的方案是有效的。与文献中的其他相关现有方案相比,我们的方案提供了很高的安全性以及较低的计算和通信成本,并提供了额外的功能,因此,我们的方案适用于电池受限的移动设备。版权所有(C)2015 John Wiley&Sons,Ltd.

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号