首页> 外文OA文献 >Cryptanalysis and improvement of password-authenticated key agreement for session initiation protocol using smart cards
【2h】

Cryptanalysis and improvement of password-authenticated key agreement for session initiation protocol using smart cards

机译:密码分析和改进使用智能卡的会话启动协议的密码验证密钥协议

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

Session Initiation Protocol (SIP) is one of the most commonly used protocols for handling sessions for Voice over Internet Protocol (VoIP)-based communications, and the security of SIP is becoming increasingly important. Recently, Zhang et al. proposed a password authenticated key agreement protocol for SIP by using smart cards to protect the VoIP communications between users. Their protocol provided some unique features, such as mutual authentication, no password table needed, and password updating freely. In this study, we performed cryptanalysis of Zhang et al.'s protocol and found that their protocol was vulnerable to the impersonation attack although the protocol could withstand several other attacks. A malicious attacker could compute other users’ privacy keys and then impersonated the users to cheat the SIP server. Furthermore, we proposed an improved password authentication key agreement protocol for SIP, which overcame the weakness of Zhang et al.’s protocol and was more suitable for VoIP communications.
机译:会话发起协议(SIP)是用于处理基于Internet协议语音(VoIP)的通信的会话的最常用协议之一,并且SIP的安全性变得越来越重要。最近,张等人。提出了一种通过使用智能卡来保护用户之间的VoIP通信的SIP密码认证密钥协商协议。他们的协议提供了一些独特的功能,例如相互身份验证,不需要密码表和自由更新密码。在这项研究中,我们对Zhang等人的协议进行了密码分析,发现他们的协议虽然可以承受其他几种攻击,但仍然容易受到模拟攻击。恶意攻击者可以计算其他用户的隐私密钥,然后冒充用户欺骗SIP服务器。此外,我们针对SIP提出了一种改进的密码验证密钥协商协议,该协议克服了Zhang等人的协议的弱点,并且更适用于VoIP通信。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号