Further improvement on a novel privacy preserving authentication and access control scheme for pervasive computing environments

被引:22
|
作者
Li, Chun-Ta [2 ,4 ]
Hwang, Min-Shiang [1 ]
Chu, Yen-Ping [3 ]
机构
[1] Natl Chung Hsing Univ, Dept Management Informat Syst, Taichung 402, Taiwan
[2] Natl Chung Hsing Univ, Dept Comp Sci & Engn, Taichung 402, Taiwan
[3] Tunghai Univ, Dept Comp Sci & Informat Engn, Taichung 407, Taiwan
[4] Tainan Univ Technol, Dept Informat Management, Tainan 710, Taiwan
关键词
Access control; Authentication; Privacy; Pervasive Computing Environment; Security;
D O I
10.1016/j.comcom.2008.06.002
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Privacy and authentication ire very important concepts and service levels to anonymous communications and data confidentiality. Recently, Ren et at. proposed an authentication and access control scheme for preserving privacy in pervasive computing environments (PCEs). However, in this paper, it is demonstrated that the so-called secure, privacy preserving authentication and access control scheme proposed by Ren et al. is vulnerable to service abuse attacks and, as a result. illegitimate users can freely access the service through the service provider without any worries and this flaw would lead to a serious accounting problem with their scheme. Therefore, we proposed a security improvement to their scheme to neutralize this weakness and an efficiency improvement to enhance the performance of their scheme in the user operational phase. More importantly, a new improved proposal for a scheme can still allow the mobile user to anonymously interact with the service provider in a PCE is demonstrated. (C) 2008 Elsevier B.V. All rights reserved.
引用
收藏
页码:4255 / 4258
页数:4
相关论文
共 50 条