首页> 外文OA文献 >A lightweight dynamic pseudonym identity based authentication and key agreement protocol without verification tables for multi-server architecture
【2h】

A lightweight dynamic pseudonym identity based authentication and key agreement protocol without verification tables for multi-server architecture

机译:基于轻量级动态假名身份的身份验证和密钥   没有用于多服务器架构的验证表的协议协议

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

Traditional password based authentication schemes are mostly considered insingle server environments. They are unfitted for the multi-server environmentsfrom two aspects. On the one hand, users need to register in each server and tostore large sets of data, including identities and passwords. On the otherhand, servers are required to store a verification table containing useridentities and passwords. Recently, On the base on Sood et al.'sprotocol(2011), Li et al. proposed an improved dynamic identity basedauthentication and key agreement protocol for multi-server architecture(2012).Li et al. claims that the proposed scheme can make up the security weaknessesof Sood et al.'s protocol. Unfortunately, our further research shows that Li etal.'s protocol contains several drawbacks and can not resist some types ofknown attacks, such as replay attack, Deny-of-Service attack, internal attack,eavesdropping attack, masquerade attack, and so on. In this paper, we furtherpropose a light dynamic pseudonym identity based authentication and keyagreement protocol for multi-server architecture. In our scheme, serviceproviding servers don't need to maintain verification tables for users. Theproposed protocol provides not only the declared security features in Li etal.'s paper, but also some other security features, such as traceability andidentity protection.
机译:传统的基于密码的身份验证方案通常被认为是在单个服务器环境中。从两个方面来看,它们不适合多服务器环境。一方面,用户需要在每个服务器中注册并存储大量数据,包括身份和密码。另一方面,要求服务器存储包含用户标识和密码的验证表。最近,基于Sood等人的协议(2011年),Li等人将其作为参考。 Li等人(2012)提出了一种改进的基于动态身份的身份验证和密钥协商协议,用于多服务器体系结构。声称所提出的方案可以弥补Sood等人协议的安全性弱点。不幸的是,我们的进一步研究表明,Li et al。的协议存在一些缺陷,无法抵抗某些已知类型的攻击,例如重播攻击,拒绝服务攻击,内部攻击,窃听攻击,伪装攻击等。在本文中,我们还针对多服务器体系结构提出了一种基于轻动态假名身份的认证和密钥协商协议。在我们的方案中,提供服务的服务器不需要维护用户的验证表。提出的协议不仅提供了Li et al。的论文中声明的安全功能,还提供了其他一些安全功能,例如可追溯性和身份保护。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号