Improved multi-server authentication protocol

被引:5
|
作者
Huang, Chun-Hui [1 ]
Chou, Jue-Sam [1 ]
Chen, Yalin [2 ]
Wun, Siang Yu [1 ]
机构
[1] Nanhua Univ, Dept Informat Management, Chiayi 622, Taiwan
[2] Natl Tsing Hua Univ, Inst Informat Syst & Applicat, Hsinchu, Taiwan
关键词
multi-server; password authentication protocol; smart card; impersonation attack; server-spoofing attack; SCHEME;
D O I
10.1002/sec.332
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In a multi-server environment, a user only needs to register at the registration center once instead of repeatedly registering in each server. After registration, the user can access the resources of any of the servers in the system. Many protocols have been proposed for the same. Recently, GengZhang, Zhu et al., and YoonYoo each proposed a multi-server authentication scheme. They claimed that their schemes are secure and can withstand various attacks. However, after analyses, we found that their schemes are deficient. In this paper, we first demonstrate the deficiencies of these three protocols in turn and then show our improvement on GengZhang's protocol. Our improvement makes use of both the user's and the server's secrecy to achieve mutual authentication. This results in a two-pass multi-server authentication scheme. We have analyzed its security with respect to several factors such as mutual authentication, perfect forward and backward secrecy, and prevention of smart-card-lost attack. Moreover, almost all of the parameters required for a user to log on to a server can be pre-computed. This is very important for a low-energy mobile computing device. That is, our improvement is not only one of the most efficient and secure schemes in this area but also suitable for mobile device. Copyright (C) 2011 John Wiley & Sons, Ltd.
引用
收藏
页码:331 / 341
页数:11
相关论文
共 50 条
  • [31] An improved Multi-server Authentication Scheme for Distributed Mobile Cloud Computing Services
    Irshad, Azeem
    Sher, Muhammad
    Ahmad, Hafiz Farooq
    Alzahrani, Bander A.
    Chaudhry, Shehzad Ashraf
    Kumar, Rahul
    [J]. KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2016, 10 (12): : 5529 - 5552
  • [32] On the security of an authentication scheme for multi-server architecture
    He, Debiao
    Chen, Jianhua
    Shi, Wenbo
    Khan, Muhammad Khurram
    [J]. INTERNATIONAL JOURNAL OF ELECTRONIC SECURITY AND DIGITAL FORENSICS, 2013, 5 (3-4) : 288 - 296
  • [33] Remote Three-Factor Authentication Protocol with Strong Robustness for Multi-Server Environment
    Zhang, Min
    Zhang, Jiashu
    Tan, Wenrong
    [J]. CHINA COMMUNICATIONS, 2017, 14 (06) : 126 - 136
  • [34] Smart card-based secure authentication protocol in multi-server IoT environment
    Bae, Won-il
    Kwak, Jin
    [J]. MULTIMEDIA TOOLS AND APPLICATIONS, 2020, 79 (23-24) : 15793 - 15811
  • [35] A Secure Biometrics-Based Multi-Server Authentication Protocol Using Smart Cards
    Odelu, Vanga
    Das, Ashok Kumar
    Goswami, Adrijit
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2015, 10 (09) : 1953 - 1966
  • [36] A Secure Dynamic Identity Based Authentication Protocol with Smart Cards for Multi-Server Architecture
    Li, Chun-Ta
    Lee, Cheng-Chi
    Weng, Chi-Yao
    Fan, Chun-I
    [J]. JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2015, 31 (06) : 1975 - 1992
  • [37] Smart card-based secure authentication protocol in multi-server IoT environment
    Won-il Bae
    Jin Kwak
    [J]. Multimedia Tools and Applications, 2020, 79 : 15793 - 15811
  • [38] Remote Three-Factor Authentication Protocol with Strong Robustness for Multi-Server Environment
    Min Zhang
    Jiashu Zhang
    Wenrong Tan
    [J]. China Communications, 2017, 14 (06) : 126 - 136
  • [39] A new three-factor authentication and key agreement protocol for multi-server environment
    T. Sudhakar
    V. Natarajan
    [J]. Wireless Networks, 2020, 26 : 4909 - 4920
  • [40] A new three-factor authentication and key agreement protocol for multi-server environment
    Sudhakar, T.
    Natarajan, V.
    [J]. WIRELESS NETWORKS, 2020, 26 (07) : 4909 - 4920