A new mutual authentication scheme based on nonce and smart cards

被引:67
|
作者
Liu, Jia-Yong [1 ]
Zhou, An-Min [1 ]
Gao, Min-Xu [1 ]
机构
[1] Sichuan Univ, Inst Informat Secur, Chengdu 610065, Sichuan, Peoples R China
关键词
authentication; personate attack; smart card; security improvement;
D O I
10.1016/j.comcom.2008.02.002
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In 2003, Shen, Lin and Hwang proposed a timestamp-based password authentication scheme using smart card. In the scheme the remote server does not need to store the passwords or verification tables for users' authentication, and the scheme also provides a timestamp-based mutual authentication method to prevent the forged login attack and the forged server attack. However, this authentication scheme has been found to be vulnerable to forged login attack; an attacker could impersonate legitimate users to login and access tile remote server. To solve this problem, an improved scheme will be proposed in this paper, which is based on nonce instead of timestamp and can withstand the existing forged attacks. The security analysis shows that the improved scheme still keeps tile features of the nonstorage data model authentication scheme, will not add additional computation cost to the smart card, and is more secure and more applicable than Shen's scheme. (C) 2008 Elsevier B.V. All rights reserved.
引用
收藏
页码:2205 / 2209
页数:5
相关论文
共 50 条
  • [1] Designing a new mutual authentication scheme based on nonce and smart cards
    Huang, Hui-Feng
    Liu, Su-E
    Chen, Hui-Fang
    [J]. JOURNAL OF THE CHINESE INSTITUTE OF ENGINEERS, 2013, 36 (01) : 98 - 102
  • [2] Cryptanalysis of a mutual authentication scheme based on nonce and smart cards
    Sun, Da-Zhi
    Huai, Jin-Peng
    Sun, Ji-Zhou
    Li, Jian-Xin
    [J]. COMPUTER COMMUNICATIONS, 2009, 32 (06) : 1015 - 1017
  • [3] A security enhanced mutual authentication scheme based on nonce and smart cards
    Shi, Wenbo
    He, Debiao
    [J]. JOURNAL OF THE CHINESE INSTITUTE OF ENGINEERS, 2014, 37 (08) : 1090 - 1095
  • [4] A Novel Mutual Authentication Scheme Based on Fingerprint Biometric and Nonce Using Smart Cards
    Wang, De-song
    Li, Jian-ping
    [J]. INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2011, 5 (04): : 1 - 12
  • [5] New Remote Mutual Authentication Scheme using Smart Cards
    Ramasamy, Rajaram
    Muniyandi, Amutha Prabakar
    [J]. TRANSACTIONS ON DATA PRIVACY, 2009, 2 (02) : 141 - 152
  • [6] Efficient nonce-based remote user authentication scheme using smart cards
    Lee, SW
    Kim, HS
    Yoo, KY
    [J]. APPLIED MATHEMATICS AND COMPUTATION, 2005, 167 (01) : 355 - 361
  • [7] Security analysis of a nonce-based user authentication scheme using smart cards
    Nam, Junghyun
    Kim, Seungjoo
    Park, Sangjoon
    Won, Dongho
    [J]. IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 2007, E90A (01) : 299 - 302
  • [8] New cryptanalysis paradigm on a nonce-based mutual authentication scheme
    School of Computer Science and Technology, Tianjin University, No 92 Weijin Road, Nankai District, Tianjin 300072, China
    不详
    [J]. Int. J. Netw. Secur., 2008, 1 (116-120):
  • [9] Trusted mutual authentication scheme with smart cards and passwords
    Yang, Li
    Ma, Jian-Feng
    [J]. Dianzi Keji Daxue Xuebao/Journal of the University of Electronic Science and Technology of China, 2011, 40 (01): : 128 - 133
  • [10] Cryptanalysis and an Improvement of New Remote Mutual Authentication Scheme using Smart Cards
    Karuppiah, Marimuthu
    Saravanan, R.
    [J]. JOURNAL OF DISCRETE MATHEMATICAL SCIENCES & CRYPTOGRAPHY, 2015, 18 (05): : 623 - 649