Security Enhanced Anonymous Multiserver Authenticated Key Agreement Scheme Using Smart Cards and Biometrics

被引:6
|
作者
Choi, Younsung [1 ]
Nam, Junghyun [2 ]
Lee, Donghoon [1 ]
Kim, Jiye [1 ]
Jung, Jaewook [1 ]
Won, Dongho [1 ]
机构
[1] Sungkyunkwan Univ, Dept Comp Engn, Suwon 440746, Gyeonggido, South Korea
[2] Konkuk Univ, Dept Comp Engn, Chungju 380701, Chungcheongbukd, South Korea
来源
基金
新加坡国家研究基金会;
关键词
PASSWORD AUTHENTICATION; USER; EFFICIENT; CRYPTANALYSIS; IMPROVEMENT; PROTOCOL;
D O I
10.1155/2014/281305
中图分类号
O [数理科学和化学]; P [天文学、地球科学]; Q [生物科学]; N [自然科学总论];
学科分类号
07 ; 0710 ; 09 ;
摘要
An anonymous user authentication scheme allows a user, who wants to access a remote application server, to achieve mutual authentication and session key establishment with the server in an anonymous manner. To enhance the security of such authentication schemes, recent researches combined user's biometrics with a password. However, these authentication schemes are designed for single server environment. So when a user wants to access different application servers, the user has to register many times. To solve this problem, Chuang and Chen proposed an anonymous multiserver authenticated key agreement scheme using smart cards together with passwords and biometrics. Chuang and Chen claimed that their scheme not only supports multiple servers but also achieves various security requirements. However, we show that this scheme is vulnerable to a masquerade attack, a smart card attack, a user impersonation attack, and a DoS attack and does not achieve perfect forward secrecy. We also propose a security enhanced anonymous multiserver authenticated key agreement scheme which addresses all the weaknesses identified in Chuang and Chen's scheme.
引用
收藏
页数:15
相关论文
共 50 条
  • [41] Cryptanalysis and improvement of a chaotic maps-based anonymous authenticated key agreement protocol for multiserver architecture
    Lu, Yanrong
    Li, Lixiang
    Peng, Haipeng
    Yang, Yixian
    SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (11) : 1321 - 1330
  • [42] Provably Secure Authenticated Key Agreement Scheme for Smart Grid
    Odelu, Vanga
    Das, Ashok Kumar
    Wazid, Mohammad
    Conti, Mauro
    IEEE TRANSACTIONS ON SMART GRID, 2018, 9 (03) : 1900 - 1910
  • [43] An Authenticated Key Agreement Scheme for Secure Communication in Smart Grid
    Baruah, Barnana
    Dhal, Subhasish
    2021 INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS & NETWORKS (COMSNETS), 2021, : 447 - 455
  • [44] Security weaknesses of a signature scheme and authenticated key agreement protocols
    Nose, Peter
    INFORMATION PROCESSING LETTERS, 2014, 114 (03) : 107 - 115
  • [45] A Modified Remote User Authentication and Key Agreement Scheme Using Smart Cards
    Zhang, Lijiang
    Wei, Puwen
    2008 ISECS INTERNATIONAL COLLOQUIUM ON COMPUTING, COMMUNICATION, CONTROL, AND MANAGEMENT, VOL 1, PROCEEDINGS, 2008, : 419 - 423
  • [46] An advanced anonymous and biometrics-based multi-server authentication scheme using smart cards
    Chang, Chin-Chen
    Hsueh, Wei-Yuan
    Cheng, Ting-Fang
    International Journal of Network Security, 2016, 18 (06) : 1010 - 1021
  • [47] Efficient and Security Enhanced Anonymous Authentication with Key Agreement Scheme in Wireless Sensor Networks
    Jung, Jaewook
    Moon, Jongho
    Lee, Donghoon
    Won, Dongho
    SENSORS, 2017, 17 (03)
  • [48] A cost effective mutual authentication scheme with key agreement using smart cards
    Chinese Culture University, Taiwan
    不详
    International Journal of Information and Management Sciences, 2008, 19 (04): : 571 - 587
  • [49] AMAKA: Anonymous Mutually Authenticated Key Agreement Scheme for Wireless Sensor Networks
    Malik, Monica
    Gandhi, Khushi
    Narwal, Bhawna
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY AND PRIVACY, 2022, 16 (01)
  • [50] Efficient Anonymous Authenticated Key Agreement Scheme for Wireless Body Area Networks
    Li, Tong
    Zheng, Yuhui
    Zhou, Ti
    SECURITY AND COMMUNICATION NETWORKS, 2017,