首页> 外文期刊>Wireless personal communications: An Internaional Journal >Cryptanalysis and Improvement of an RSA Based Remote User Authentication Scheme Using Smart Card
【24h】

Cryptanalysis and Improvement of an RSA Based Remote User Authentication Scheme Using Smart Card

机译:使用智能卡的基于RSA的RSA远程用户身份验证方案的密码分析和改进

获取原文
获取原文并翻译 | 示例
           

摘要

User's password with smart card based authentication protocol is needed to access resources securely from remote server. In 2014, Huang et al. proposed a timestamp-based authentication protocol and they claimed that their scheme is secure against all possible attacks. In this paper, we have pointed out that Huang et al.'s scheme is insecure against off-line password guessing attack, insider attack and forgery attack. Beside these, inefficient password update phase can lead to denial of service. To remove these security loopholes, we have proposed an efficient RSA-cryptosystem based remote user authentication scheme using smart card. Security (formal and informal) analysis shows that the proposed scheme provides better security tradeoff than Huang et al.'s scheme. Further, we have simulated our proposed scheme for the formal security verification using Automated Validation of Internet Security Protocols and Applications tool to confirm that the proposed scheme is secure against passive and active attacks. Performance analysis shows that the proposed scheme provides lower computational and communication cost than Huang et al.'s scheme as well as other related competitive existing schemes.
机译:使用基于智能卡的身份验证协议的用户密码需要从远程服务器安全地访问资源。 2014年,黄等人。提出了一种基于时间戳的身份验证协议,并且他们声称它们的方案是安全的,以防止所有可能的攻击。在本文中,我们已经指出了Huang等人。的计划是针对离线密码猜测攻击,内幕攻击和伪造攻击的不安全。除此之外,低效密码更新阶段可以导致拒绝服务。要删除这些安全漏洞,我们已经提出了一种使用智能卡的基于RSA-Cryptosystem的基于RSA密码系统的远程用户身份验证方案。安全性(正式和非正式)分析表明,该方案提供比Huang等人更好的安全权衡。的计划。此外,我们已经使用Internet安全协议和应用程序工具的自动验证模拟了我们提出的正式安全验证,以确认所提出的方案是安全的防毒和主动攻击。性能分析表明,该方案提供比Huang等人的计算和通信成本更低。的计划以及其他相关的竞争现有计划。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号