首页> 外文期刊>Security and Communications Networks >A practical anonymous authentication protocol for wireless roaming
【24h】

A practical anonymous authentication protocol for wireless roaming

机译:一种用于无线漫游的实用匿名身份验证协议

获取原文
获取原文并翻译 | 示例
           

摘要

Recently, Chen et al. proposed a practical authentication protocol for supporting anonymous roaming in wireless access networks, then the protocol is further improved by Hsieh and Leu. In this paper, we demonstrate the adversarial model of this type of protocols and show that Hsieh-Leu scheme is not as secure as they originally claimed to be. In particular, we show that their protocol does not provide user privacy protection, and it is vulnerable to off-line password guessing attack mounted by a side channel adversary who has compromised all the information stored in the user's smart card. To fix these weaknesses, a new practical authentication protocol with anonymity for wireless roaming is proposed. We use the formal verification tool ProVerif, which is based on applied pi calculus, to prove the security of the proposed scheme. The experimental results confirm that the new scheme not only achieves many desirable properties, such as strong anonymity, perfect forward secrecy and support of session key update, but also provides robustness against all those attacks that Hsieh-Leu protocol does not resist. Copyright (c) 2013 John Wiley & Sons, Ltd.
机译:最近,Chen等。 Hsieh和Leu提出了一种实用的身份验证协议以支持无线接入网络中的匿名漫游,然后对该协议进行了进一步的改进。在本文中,我们演示了这种协议的对抗模型,并表明Hsieh-Leu方案并不像它们最初声称的那样安全。特别是,我们证明了他们的协议不提供用户隐私保护,并且容易受到旁道对手发起的离线密码猜测攻击的攻击,该攻击者已经破坏了用户智能卡中存储的所有信息。为了解决这些弱点,提出了一种新的具有匿名性的实用的无线漫游身份验证协议。我们使用基于应用pi演算的形式验证工具ProVerif来证明所提出方案的安全性。实验结果证实,该新方案不仅具有强匿名性,完美的前向保密性和对会话密钥更新的支持等许多理想的性能,而且还提供了针对所有Hsieh-Leu协议无法抵抗的攻击的鲁棒性。版权所有(c)2013 John Wiley&Sons,Ltd.

著录项

  • 来源
    《Security and Communications Networks》 |2014年第8期|1264-1273|共10页
  • 作者单位

    Hangzhou Normal Univ, Sch Informat Sci & Engn, Hangzhou 310036, Zhejiang, Peoples R China;

    City Univ Hong Kong, Dept Comp Sci, Kowloon Tong, Hong Kong, Peoples R China;

    City Univ Hong Kong, Dept Comp Sci, Kowloon Tong, Hong Kong, Peoples R China;

    Univ Wollongong, Sch Comp Sci & Software Engn, Wollongong, NSW 2522, Australia;

    Hangzhou Normal Univ, Sch Informat Sci & Engn, Hangzhou 310036, Zhejiang, Peoples R China;

    Hangzhou Normal Univ, Sch Informat Sci & Engn, Hangzhou 310036, Zhejiang, Peoples R China;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    authentication; user anonymity; roaming; wireless networks;

    机译:身份验证;用户匿名;漫游;无线网络;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号