An Enhanced Authentication Protocol for Multi-server Environment Using Password and Smart Card

被引:13
|
作者
Sudhakar, T. [1 ]
Natarajan, V [2 ]
Gopinath, M. [3 ]
Saranyadevi, J. [4 ]
机构
[1] Amrita Vishwa Vidyapeetham, Amrita Sch Engn, Dept Comp Sci & Engn, Chennai, Tamil Nadu, India
[2] Anna Univ, Dept Instrumentat Engn, Chennai, Tamil Nadu, India
[3] Veltech Hightech Dr Rangarajan Dr Sakunthala Engn, Dept Informat Technol, Chennai, Tamil Nadu, India
[4] Anna Univ, Dept Comp Technol, Chennai, Tamil Nadu, India
关键词
Password; Smart card; Mutual authentication; Key agreement; Multi-server environment; Cryptanalysis; SCHEME;
D O I
10.1007/s11277-020-07462-4
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
In the past two decades, numerous two-factor authentication protocols have been proposed for the multi-server environment using a smart card and password. Sahoo et al. recently proposed an authentication protocol for the multi-server environments. Our cryptanalysis shows that the Sahoo et al. scheme is susceptible to several attacks such as offline password guessing, spoofing, replay and smart-card-lost. Also their scheme does not provide two-factor security truly. We propose a new secure, mutually authenticated key-sharing protocol for the multi-server environment to overcome the security flaws in their scheme. We formally prove the secure authentication of the proposed scheme using Burrows-Abadi-Needham logic and simulate various attacks through the automated validation of internet security protocols and applications tool. Additionally, we provide an informal security analysis to show the security and functionality features of the proposed scheme. Moreover, the security and performance comparison results shows that the proposed scheme offers better security and performance.
引用
收藏
页码:2779 / 2803
页数:25
相关论文
共 50 条
  • [1] An Enhanced Authentication Protocol for Multi-server Environment Using Password and Smart Card
    T. Sudhakar
    V. Natarajan
    M. Gopinath
    J. Saranyadevi
    [J]. Wireless Personal Communications, 2020, 115 : 2779 - 2803
  • [2] An enhanced multi-server authentication protocol using password and smart-card: cryptanalysis and design
    Maitra, Tanmoy
    Islam, S. K. Hafizul
    Amin, Ruhul
    Giri, Debasis
    Khan, Muhammad Khurram
    Kumar, Neeraj
    [J]. SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (17) : 4615 - 4638
  • [3] A multi-server architecture authentication protocol using smart card
    Yu, Jie
    Pei, Qingqi
    [J]. PROCEEDINGS OF THE 2012 EIGHTH INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND SECURITY (CIS 2012), 2012, : 511 - 515
  • [4] A Password and Smart Card Based User Authentication Mechanism for Multi-Server Environments
    Li, Chun-Ta
    Lee, Cheng-Chi
    Mei, Hsing
    Yang, Chia-Hao
    [J]. INTERNATIONAL JOURNAL OF FUTURE GENERATION COMMUNICATION AND NETWORKING, 2012, 5 (04): : 153 - 163
  • [5] A password and smart card based user authentication mechanism for multi-server environments
    Department of Information Management, Tainan University of Technology, 529 Zhongzheng Road, Tainan City 71002, Taiwan
    不详
    不详
    不详
    [J]. Int. J. Future Gener. Commun. Networking, 4 (153-164):
  • [6] Authentication scheme based on smart card in multi-server environment
    Simin Zhou
    Qingqing Gan
    Xiaoming Wang
    [J]. Wireless Networks, 2020, 26 : 855 - 863
  • [7] Smart card-based secure authentication protocol in multi-server IoT environment
    Bae, Won-il
    Kwak, Jin
    [J]. MULTIMEDIA TOOLS AND APPLICATIONS, 2020, 79 (23-24) : 15793 - 15811
  • [8] Smart card-based secure authentication protocol in multi-server IoT environment
    Won-il Bae
    Jin Kwak
    [J]. Multimedia Tools and Applications, 2020, 79 : 15793 - 15811
  • [9] Authentication scheme based on smart card in multi-server environment
    Zhou, Simin
    Gan, Qingqing
    Wang, Xiaoming
    [J]. WIRELESS NETWORKS, 2020, 26 (02) : 855 - 863
  • [10] An Enhanced Smart Card and Biometrics-Based Authentication Scheme in Multi-server Environment
    Xiao Haiyan
    Wang Lifang
    [J]. COMPLEX, INTELLIGENT, AND SOFTWARE INTENSIVE SYSTEMS, 2019, 772 : 770 - 779