On the security of an authentication scheme for multi-server architecture

被引:1
|
作者
He, Debiao [1 ,2 ]
Chen, Jianhua [1 ]
Shi, Wenbo [3 ]
Khan, Muhammad Khurram [4 ]
机构
[1] Wuhan Univ, Sch Math & Stat, Wuhan 430072, Peoples R China
[2] Chinese Acad Sci, Inst Informat Engn, State Key Lab Informat Secur, Beijing 100093, Peoples R China
[3] Northeastern Univ Qinhuangdao, Dept Elect Engn, Qinhuangdao 066004, Peoples R China
[4] King Saud Univ, Ctr Excellence Informat Assurance, Riyadh 11653, Saudi Arabia
基金
中国国家自然科学基金;
关键词
authentication scheme; multi-server architecture; smart card;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Recently, Pippal et al. proposed an authentication scheme for multi-server architecture and claimed that their scheme could withstand various attacks. In this paper, we will analyse the security of Pippal et al.'s scheme. After reviewing their scheme, we find that their scheme cannot withstand the server spoofing attack, the user impersonation attack, the offline password guessing attack and the privileged insider attack. The analysis shows their scheme is not secure for practical applications.
引用
收藏
页码:288 / 296
页数:9
相关论文
共 50 条
  • [31] Cryptanalysis and improvement of a smart card based authentication scheme for multi-server architecture using ECC
    Wan, Tao
    Liu, Xiaochang
    Liao, Weichuan
    Jiang, Nan
    International Journal of Network Security, 2019, 21 (06) : 993 - 1002
  • [32] A security enhanced user authentication scheme for multi-server environment without using smart cards
    Qiao, Pengshuai
    INTERNATIONAL JOURNAL OF ELECTRONIC SECURITY AND DIGITAL FORENSICS, 2015, 7 (02) : 197 - 210
  • [33] A flexible user authentication scheme for multi-server Internet services
    Tsaur, WJ
    NETWORKING - ICN 2001, PT I, PROCEEDINGS, 2001, 2093 : 174 - 183
  • [34] TAMA: Three-Factor Authentication for Multi-server Architecture
    Amintoosi H.
    Nikooghadam M.
    Kumari S.
    Kumar S.
    Chen C.-M.
    Human-centric Computing and Information Sciences, 2021, 11
  • [35] Authentication scheme based on smart card in multi-server environment
    Simin Zhou
    Qingqing Gan
    Xiaoming Wang
    Wireless Networks, 2020, 26 : 855 - 863
  • [36] Provable user authentication scheme on ECC in multi-server environment
    Toan-Thinh Truong
    Minh-Triet Tran
    Anh-Duc Duong
    Phuong-Nam Nguyen-Pham
    Hoang-Anh Nguyen
    Trong-Nguyen Nguyen
    The Journal of Supercomputing, 2023, 79 : 725 - 761
  • [37] Cryptanalysis and Improvement User Authentication Scheme for Multi-server Environment
    Kang, Dongwoo
    Moon, Jongho
    Lee, Donghoon
    Won, Dongho
    COMPUTATIONAL SCIENCE AND ITS APPLICATIONS - ICCSA 2016, PT V, 2016, 9790 : 87 - 99
  • [38] An enhanced user authentication scheme for multi-server Internet services
    Tsaur, WJ
    Wu, CC
    Lee, WB
    APPLIED MATHEMATICS AND COMPUTATION, 2005, 170 (01) : 258 - 266
  • [39] Cryptanalysis of Provably Secure Authentication Scheme for Multi-Server Environment
    Sudhakar, T.
    Natarajan, V.
    2018 10TH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING (ICOAC), 2018, : 43 - 46
  • [40] An efficient and secure multi-server authentication scheme with key agreement
    Tsaur, Woei-Jiunn
    Li, Jia-Hong
    Lee, Wei-Bin
    JOURNAL OF SYSTEMS AND SOFTWARE, 2012, 85 (04) : 876 - 882