摘要
目的构造强安全性、高效率的身份认证机制,确保分布式系统安全.方法利用NTRUSign数字签名算法,构造了一个基于口令的远程用户认证方案.该方案包括3个阶段:注册阶段、认证阶段和更改口令阶段.结果安全性分析表明,其安全性基于安全Hash函数和大维数格中寻找最近向量的困难问题;方案使用弱口令,允许用户自主选择并更改口令,实现了双向认证,具备用户友好性;能够抵御中间人攻击,抗DOS攻击,具备前向安全性和强安全修复性;NTRUSign的可展性缺陷不影响其安全性.结论NTRUSign方案是一个低开销、强安全性的方案,适于使用在资源受限及安全性要求较高的场合.
Building strong security and good efficiency authentication scheme is the key to ensuring the security of distribution system. NTRUSign is a low cost and fast signature scheme, which suits to resource constraint applications. A new remote user authentication scheme using password and NTRUSign is also proposed. The scheme has three phases: registration phase, authentication phase and password changing phase. The security of the scheme relies on Hash function and the fact that for most lattices, it is very difficult to find extremely short vectors. Furthermore, the scheme has many merits: it lets users freely choose and change password at their own will; it provides mutual authentication between two entities; it resists man- in-middle attack and denial of service attack; in addition, it has forward security and strong security reparability. In a word, the proposed scheme is a better scheme with lower cost and stronger security, which can be applied in high security level environment.
出处
《沈阳建筑大学学报(自然科学版)》
EI
CAS
2006年第3期487-490,共4页
Journal of Shenyang Jianzhu University:Natural Science
基金
国家自然科学基金项目(60271012)