Design and Analysis of Bilinear Pairing Based Mutual Authentication and Key Agreement Protocol Usable in Multi-server Environment

被引:64
|
作者
Amin, Ruhul [1 ]
Biswas, G. P. [2 ]
机构
[1] Indian Sch Mines, Dept CSE, Dhanbad 826004, Bihar, India
[2] Indian Sch Mines, Dhanbad 826004, Bihar, India
关键词
Bilinear pairing; Biometric template; User authentication; Three factor; User anonymity; Security attacks; CERTIFIED PUBLIC KEYS; USER AUTHENTICATION; SMART-CARD; POWER ANALYSIS; SCHEME; EFFICIENT; SECURITY;
D O I
10.1007/s11277-015-2616-7
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
With the increasing popularity and demand for various applications, the internet user accesses remote server by performing remote user authentication protocol using smart card over the insecure channel. In order to resist insider attack, most of the users remember a set of identity and password for accessing different application servers. Therefore, remembering set of identity and password is an extra overhead to the user. To avoid the mentioned shortcoming, many remote user authentication and key agreement protocols for multi-server architecture have been proposed in the literature. Recently, Hsieh-Leu proposed an improve protocol of Liao et al. scheme and claimed that the improve protocol is applicable for practical implementation. However, through careful analysis, we found that Hsieh-Leu scheme is still vulnerable to user anonymity, password guessing attack, server masquerading attack and the password change phase is inefficient. Therefore, the main aim of this paper was to design a bilinear pairing based three factors remote user authentication scheme using smart card for providing security weaknesses free protocol. In order to validate security proof of the proposed protocol, this paper uses BAN logic which ensures that the same protocol achieves mutual authentication and session key agreement property securely. Furthermore, this paper also informally illustrates that the proposed protocol is well protected against all the relevant security attacks. The performance analysis and comparison with other schemes are also made, and it has been found that the proposed protocol achieves complete security requirements with comparatively lesser complexities.
引用
收藏
页码:439 / 462
页数:24
相关论文
共 50 条
  • [41] Cryptanalysis and Improvement of a Biometric-Based Multi-Server Authentication and Key Agreement Scheme
    Wang, Chengqi
    Zhang, Xiao
    Zheng, Zhiming
    [J]. PLOS ONE, 2016, 11 (02):
  • [42] A Novel User Authentication and Key Agreement Protocol for Accessing Multi-Medical Server Usable in TMIS
    Amin, Ruhul
    Biswas, G. P.
    [J]. JOURNAL OF MEDICAL SYSTEMS, 2015, 39 (03)
  • [43] A Novel User Authentication and Key Agreement Protocol for Accessing Multi-Medical Server Usable in TMIS
    Ruhul Amin
    G. P. Biswas
    [J]. Journal of Medical Systems, 2015, 39
  • [44] Cryptanalysis and Improvement of a Biometrics-Based Multi-server Authentication with Key Agreement Scheme
    Kim, Hakhyun
    Jeon, Woongryul
    Lee, Kwangwoo
    Lee, Yunho
    Won, Dongho
    [J]. COMPUTATIONAL SCIENCE AND ITS APPLICATIONS - ICCSA 2012, PT III, 2012, 7335 : 391 - 406
  • [45] Improvement on a Biometric-Based Key Agreement and Authentication Scheme for the Multi-server Environments
    Moon, Jongho
    Lee, Youngsook
    Yang, Hyungkyu
    Lee, Hakjun
    Ha, Sewan
    Won, Dongho
    [J]. COMPUTATIONAL SCIENCE AND ITS APPLICATIONS - ICCSA 2018, PT I, 2018, 10960 : 541 - 557
  • [46] An ECC Based Secure Authentication and Key Exchange Scheme in Multi-server Environment
    Tomar, Ashish
    Dhar, Joydip
    [J]. WIRELESS PERSONAL COMMUNICATIONS, 2019, 107 (01) : 351 - 372
  • [47] Security Improvement on a Biometrics-Based Authentication Protocol for Multi-server Environment
    Gu, Yi
    Li, Shengqiang
    [J]. 2017 17TH IEEE INTERNATIONAL CONFERENCE ON COMMUNICATION TECHNOLOGY (ICCT 2017), 2017, : 1322 - 1327
  • [48] Analysis and improvement of an authentication protocol for the multi-server architecture
    [J]. Wan, T. (wantao217@163.com), 2013, Science Press (40):
  • [49] An ECC Based Secure Authentication and Key Exchange Scheme in Multi-server Environment
    Ashish Tomar
    Joydip Dhar
    [J]. Wireless Personal Communications, 2019, 107 : 351 - 372
  • [50] Lightweight identity authentication protocol based on dynamic ID in multi-server environment
    Qi, Xiaochen
    Li, Meihong
    Du, Ye
    [J]. Beijing Hangkong Hangtian Daxue Xuebao/Journal of Beijing University of Aeronautics and Astronautics, 2021, 47 (12): : 2632 - 2640