摘要
分析传统S/KEY型一次性口令认证系统的缺陷,提出一种新型的S/KEY认证方案,实现客户端与服务器的双向认证,可进行会话密钥协商,且每次认证产生不同的会话密钥。该方案可有效抵御重放攻击、小数攻击、破坏协议攻击和冒充攻击,对中间人攻击也有较强的防御作用。
This paper analyzes some defects of the traditional S/KEY One-Time Password(OTP) authorization system, and proposes a new S/KEY authorization solution. Mutual authorization between clients and the server and session key agreement is carried out, and new session key is produced in each authorization. The new S/KEY solution can effectively resist replay attacks, small integer attacks, protocol-broken attacks and personate attacks, and especially has some effects against the man-in-the-middle attacks.
出处
《计算机工程》
CAS
CSCD
北大核心
2009年第5期175-176,193,共3页
Computer Engineering
基金
国家自然科学基金资助项目(60673131)
黑龙江省自然科学基金资助项目(F200608)
黑龙江省教育厅海外学人重点科研基金资助项目(1152hq08)
关键词
一次性口令
身份认证
S/KEY认证
One-Time Password(OTP)
identity authorization
S/KEY authorization