...
首页> 外文期刊>Wireless personal communications: An Internaional Journal >Cryptanalysis and Improvement of an Anonymous Multi-server Authenticated Key Agreement Scheme
【24h】

Cryptanalysis and Improvement of an Anonymous Multi-server Authenticated Key Agreement Scheme

机译:密码分析和改进匿名多服务器经过身份验证的密钥协议计划

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

A multi-server authentication scheme offers a single registration procedure, but allows to access services from multiple servers. For efficiently communicating with the servers, a number of password based remote user authentication schemes have been explored. Recently, Chuang and Chen (Expert Syst Appl 41(4):1411-1418, 2014) have discussed an anonymous multi-server a uthenticated key agreement scheme using smart card together with password and biometrics. This scheme achieves various security requirements while supporting multiple servers as claimed by the authors. In this paper, we show that this scheme is susceptible to different attacks, such as DOS attack, user/server impersonation attack, a smart card attack, session specific temporary key attack, and it does not achieve perfect forward secrecy. In this paper, we propose a new scheme by overcoming the drawbacks of the Chuang and Chen's scheme. Our scheme can provide non-repudiation as the authentication message sent by a user is digitally signed by the server using the RSA digital signature. Due to efficiency and security, our scheme is suitable for the services like tele medicine information system, which can provide healthcare delivery services between the patients and doctors to employ telecare medicine facilities and access electronic medical records.
机译:多服务器身份验证方案提供单个注册过程,但允许从多个服务器访问服务。为了有效地与服务器通信,已探讨了许多基于密码的远程用户身份验证方案。最近,陈和陈(专家SYST APPL 41(4):1411-1418,2014)已经讨论了使用智能卡以及密码和生物识别系统的匿名多服务器符合Quenticated关键协议方案。该方案在支持作者申请的多个服务器的同时实现了各种安全要求。在本文中,我们表明,该方案易受不同的攻击,如DOS攻击,用户/服务器冒充攻击,智能卡攻击,会议特定的临时关键攻击,并且它没有实现完美的前锋保密。在本文中,我们通过克服庄和陈方案的缺点提出了一种新方案。我们的方案可以提供不可否认的,因为用户发送的用户发送的认证消息由服务器使用RSA数字签名以数字签名。由于效率和安全,我们的计划适用于远程医学信息系统等服务,可以在患者和医生之间提供医疗送货服务,以便使用远程护理的药物设施和访问电子医疗记录。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号