Analysis and Improvement on a Hash-Based Authentication Scheme for Multi-Server Architecture

被引:3
|
作者
LI Rui [1 ]
KANG Baoyuan [1 ]
MAI Kaiqiang [1 ]
机构
[1] School of Computer Science and Technology, Tiangong University
关键词
D O I
10.19823/j.cnki.1007-1202.2021.0050
中图分类号
TP368.5 [服务器、工作站];
学科分类号
081201 ;
摘要
In order to meet people’s demand for various types of network services, researchers have conducted extensive research on authentication schemes for multi-server architecture. Although various schemes have been proposed, most of them still have safety defects and fail to meet safety requirements. Recently, Haq et al presented an efficient Hash-based authenticated key agreement scheme for multi-server scheme and claimed that their scheme can withstand all well-known attacks. However, we find that their scheme is vulnerable to replay attack, tracking attack and malicious server impersonation user attack. Then we propose an improved scheme. We also analyze the security of the improved scheme and compare with Haq et al’s scheme in security and computational efficiency. Furthermore, we use the AVISPA(Automated Validation of Internet Security Protocols and Applications) tool to verify the security of the improved scheme.
引用
收藏
页码:394 / 404
页数:11
相关论文
共 50 条