An enhanced smart card and dynamic ID based remote multi-server user authentication scheme

被引:0
|
作者
Nitish Andola
Sourabh Prakash
Raghav Gahlot
S. Venkatesan
Shekhar Verma
机构
[1] Jaypee Institute of Information Technology,Computer Science & Engineering and Information Technology
[2] Indian Institute of Information Technology Allahabad,undefined
来源
Cluster Computing | 2022年 / 25卷
关键词
Authentication; Access control; AVISPA; BAN logic; CUDA; Multi-server environment; Smart card;
D O I
暂无
中图分类号
学科分类号
摘要
Organizations often use smart card-based user authentication for remote access. The research community has put forward dynamic identity based remote user authentication schemes for distributed multi-server environment to safeguard the connection between user and server. Recently, Qiu et al. proposed an efficient smart card based remote user authentication scheme for the multi-server environment, in which they uphold their scheme provides mutual authentication and key agreement, user-anonymity, resistance against various kind of attacks. This paper will manifest that if the adversary is successful in stealing a smart card, then their schemes are vulnerable to masquerade attack, server spoofing attack, and password guessing attack. We overcome their flaws and propose an enhanced anonymous scheme where whenever the user wants to log into a server, the user identity is changed dynamically before login. And also, the scheme resists all possible attacks. We compared our scheme with respect to the related scheme, used BAN logic for verification of correctness of mutual key agreement and AVISPA to prove scheme is safe. We have provided formal security proofs for our scheme.
引用
收藏
页码:3699 / 3717
页数:18
相关论文
共 50 条
  • [1] An enhanced smart card and dynamic ID based remote multi-server user authentication scheme
    Andola, Nitish
    Prakash, Sourabh
    Gahlot, Raghav
    Venkatesan, S.
    Verma, Shekhar
    [J]. CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2022, 25 (05): : 3699 - 3717
  • [2] A novel smart card and dynamic ID based remote user authentication scheme for multi-server environments
    Li, Xiong
    Ma, Jian
    Wang, Wendong
    Xiong, Yongping
    Zhang, Junsong
    [J]. MATHEMATICAL AND COMPUTER MODELLING, 2013, 58 (1-2) : 85 - 95
  • [3] Cryptanalysis of Efficient Dynamic ID Based Remote User Authentication Scheme in Multi-server Environment Using Smart Card
    Pan, Hsieh-Tsen
    Tsaur, Shyh-Chang
    Hwang, Min-Shiang
    [J]. PROCEEDINGS OF 2016 12TH INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND SECURITY (CIS), 2016, : 590 - 593
  • [4] Security enhanced dynamic ID based remote user authentication scheme for multi-server environments
    IT Convergence Research Institute, Sungkyunkwan University, Korea, Republic of
    不详
    [J]. Int. J. u e Serv. Sci. Technol., 7 (127-136):
  • [5] A secure dynamic ID based remote user authentication scheme for multi-server environment
    Liao, Yi-Pin
    Wang, Shuenn-Shyang
    [J]. COMPUTER STANDARDS & INTERFACES, 2009, 31 (01) : 24 - 29
  • [6] An Improved Dynamic ID Based Remote User Authentication Scheme for Multi-server Environment
    Sun, Qimin
    Moon, Jongho
    Choi, Younsung
    Won, Dongho
    [J]. GREEN, PERVASIVE, AND CLOUD COMPUTING, 2016, 9663 : 229 - 242
  • [7] A secure dynamic ID based remote user authentication scheme for multi-server environment using smart cards
    Lee, Cheng-Chi
    Lin, Tsung-Hung
    Chang, Rui-Xiang
    [J]. EXPERT SYSTEMS WITH APPLICATIONS, 2011, 38 (11) : 13863 - 13870
  • [8] A more secure dynamic id based remote user authentication scheme for multi-server environment
    Guo, Dianli
    Wen, Fengtong
    [J]. Journal of Computational Information Systems, 2013, 9 (02): : 407 - 414
  • [9] Robust Secure Dynamic ID Based Remote User Authentication Scheme for Multi-server Environment
    Toan-Thinh Truong
    Minh-Triet Tran
    Anh-Duc Duong
    [J]. COMPUTATIONAL SCIENCE AND ITS APPLICATIONS - ICCSA 2013, PT V, 2013, 7975 : 502 - 515
  • [10] Weaknesses in a dynamic ID-based remote user authentication scheme for multi-server environment
    He, Debiao
    Huang, Yin
    [J]. INTERNATIONAL JOURNAL OF ELECTRONIC SECURITY AND DIGITAL FORENSICS, 2012, 4 (01) : 43 - 53