摘要
为解决时间同步式和事件式的缺点,提出一种新的动态口令认证机制,它产生的口令与时间无关,只与登录的次数相关,故每次登录时的口令都不相同。它的核心是带输出的自动机,在客户端和服务器运行相同的自动机,且登录次数同步变化,故两端口令可以保持一致。在分析口令独立性的基础上,证明自动机产生的口令符合动态口令的条件。系统有两种工作模式,同步时的登录模式和失步时的校准模式。在校准模式下,只需经过两次握手,客户端和服务器就可以恢复同步。校准操作很容易,用户在客户端可以独立操作完成,不需要管理员干预。
For solve the defect of based on time and based on event,This paper propose a new dynamic password authentication scheme.Dynamic password is correlated to the number of logging-on,so it is different each time.It's core is automate with output.Automate run both on client and server.Since the number of logging-on change synchronally,so the password between client and server is same.This paper prove the password satisfy constraint of dynamic password based on independent analysis of password.New scheme have two work mode:logging-on mode and calibration mode.Calibration mode can restore the synchronization between client and server after two handshakes.Calibration is very easy,user can.
出处
《湖北师范学院学报(自然科学版)》
2007年第1期64-68,共5页
Journal of Hubei Normal University(Natural Science)
关键词
动态身份认证
动态口令
自动机
同步
独立
dynamic identity authentication
dynamic password
automata
synchronous
independent
independent