首页> 外文OA文献 >A Cloud Authentication Protocol using One-Time Pad
【2h】

A Cloud Authentication Protocol using One-Time Pad

机译:使用One-Time pad的云身份验证协议

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

There is a significant increase in the amount ofuddata breaches in corporate servers in the cloud environments.udThis includes username and password compromise in the cloududand account hijacking, thus leading to severe vulnerabilities ofudthe cloud service provisioning. Traditional authentication schemesudrely on the users to use their credentials to gain access to cloududservice. However once the credential is compromised, the attackerudwill gain access to the cloud service easily. This paper proposes a novel scheme that does not require the user to present his credentials, and yet is able to prove ownership of access to the cloud service using a variant of zero-knowledge proof. A challenge-response protocol is devised to authenticate the user, requiring the user to compute a one-time pad (OTP) to authenticate himself to the server without revealing password to the server. A prototype has been implemented to facilitate the authentication of the user when accessing Dropbox, and the experiment results showed that the overhead incurred is insignificant.
机译:在云环境中,公司服务器中 uddata数据泄露的数量显着增加。 ud这包括在云中 udd用户名和密码的泄露 udd帐户劫持,从而导致 udd云服务供应的严重漏洞。传统的身份验证方案非常依靠用户来使用其凭据来访问云 udservice。但是,一旦凭据遭到破坏,攻击者将能够轻松访问云服务。本文提出了一种新颖的方案,该方案不需要用户提供其凭据,但能够使用零知识证明的变体来证明对云服务的访问所有权。设计了一种质询-响应协议来对用户进行身份验证,要求用户计算一次性密码(OTP)以向服务器进行身份验证,而无需向服务器透露密码。已经实现了原型,以方便用户在访问Dropbox时进行身份验证,并且实验结果表明所产生的开销微不足道。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号