A new three-factor authentication and key agreement protocol for multi-server environment

被引:8
|
作者
Sudhakar, T. [1 ]
Natarajan, V. [2 ]
机构
[1] Anna Univ, Dept Comp Technol, MIT Campus, Chennai, Tamil Nadu, India
[2] Anna Univ, Dept Instrumentat Engn, MIT Campus, Chennai, Tamil Nadu, India
关键词
Authentication; BAN logic; Biometric; Multi-server environment; Smart card; Three-factor security; REMOTE PASSWORD AUTHENTICATION; SMART-CARD; SCHEME; SECURE;
D O I
10.1007/s11276-018-01922-3
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Several password and smart-card based two-factor security remote user authentication protocols for multi-server environment have been proposed for the last two decades. Due to tamper-resistant nature of smart cards, the security parameters are stored in it and it is also a secure place to perform authentication process. However, if the smart card is lost or stolen, it is possible to extract the information stored in smart card using power analysis attack. Hence, the two factor security protocols are at risk to various attacks such as password guessing attack, impersonation attack, replay attack and so on. Therefore, to enhance the level of security, researchers have focused on three-factor (Password, Smart Card, and Biometric) security authentication scheme for multi-server environment. In existing biometric based authentication protocols, keys are generated using fuzzy extractor in which keys cannot be renewed. This property of fuzzy extractor is undesirable for revocation of smart card and re-registration process when the smart card is lost or stolen. In addition, existing biometric based schemes involve public key cryptosystem for authentication process which leads to increased computation cost and communication cost. In this paper, we propose a new multi-server authentication protocol using smart card, hash function and fuzzy embedder based biometric. We use Burrows-Abadi-Needham logic to prove the correctness of the new scheme. The security features and efficiency of the proposed scheme is compared with recent schemes and comparison results show that this scheme provides strong security with a significant efficiency.
引用
收藏
页码:4909 / 4920
页数:12
相关论文
共 50 条
  • [41] A Complete User Authentication and Key Agreement Scheme Using Cancelable Biometrics and PUF in Multi-Server Environment
    Zhang, Hui
    Bian, Weixin
    Jie, Biao
    Xu, Deqin
    Zhao, Jun
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2021, 16 : 5413 - 5428
  • [42] Anonymous biometrics-based authentication with key agreement scheme for multi-server environment using ECC
    Qi, Mingping
    Chen, Jianhua
    [J]. MULTIMEDIA TOOLS AND APPLICATIONS, 2019, 78 (19) : 27553 - 27568
  • [43] Crytanalysis of Three Anonymous Authentication Schemes for Multi-Server Environment
    对三个多服务器环境下匿名认证协议的分析
    [J]. Wang, Ping (pwang@pku.edu.cn), 1937, Chinese Academy of Sciences (29):
  • [44] A Provable One-way Authentication Key Agreement Scheme with User Anonymity for Multi-server Environment
    Zhu, Hongfeng
    [J]. KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2015, 9 (02): : 811 - 829
  • [45] Cryptanalysis of Anonymous Three Factor-Based Authentication Schemes for Multi-server Environment
    Mo, Jiaqing
    Chen, Hang
    Shen, Wei
    [J]. SECURITY WITH INTELLIGENT COMPUTING AND BIG-DATA SERVICES, 2020, 895 : 456 - 468
  • [46] An efficient and secure design of multi-server authenticated key agreement protocol
    Azeem Irshad
    Husnain Naqvi
    Shehzad Ashraf Chaudhry
    Shouket Raheem
    Saru Kumari
    Ambrina Kanwal
    Muhammad Usman
    [J]. The Journal of Supercomputing, 2018, 74 : 4771 - 4797
  • [47] Trusted Authority Assisted Three-Factor Authentication and Key Agreement Protocol for the Implantable Medical System
    Mao, Deming
    Zhang, Ling
    Li, Xiaoyu
    Mu, Dejun
    [J]. WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2018,
  • [48] A computationally efficient authentication and key agreement scheme for multi-server switching in WBAN
    Xu, Zisang
    Xu, Cheng
    Xu, Jianbo
    Meng, Xiangwei
    [J]. INTERNATIONAL JOURNAL OF SENSOR NETWORKS, 2021, 35 (03) : 143 - 160
  • [49] An efficient and secure design of multi-server authenticated key agreement protocol
    Irshad, Azeem
    Naqvi, Husnain
    Chaudhry, Shehzad Ashraf
    Raheem, Shouket
    Kumari, Saru
    Kanwal, Ambrina
    Usman, Muhammad
    [J]. JOURNAL OF SUPERCOMPUTING, 2018, 74 (09): : 4771 - 4797
  • [50] A secure remote password authentication scheme with key agreement for multi-server environments
    Lee, Wei-Bin
    Wu, Chia-Chun
    Tsaur, Woei-Jiunn
    [J]. WMSCI 2005: 9th World Multi-Conference on Systemics, Cybernetics and Informatics, Vol 5, 2005, : 19 - 23