摘要
为了提高EIM(Enterprise Instant Messenger)的安全性,在对比当前常用认证技术的基础上,提出了一种结合HASH函数、对称密码机制以及挑战/应答机制的基于软令牌的双向认证方案。最后对该方案进行了性能分析。结果表明:该方案具有保护用户身份信息,防止诸如重放、假冒和穷举等常见身份认证攻击,实现双向认证的优点。
In order to improve the security of EIM, based on the comparison of the present-use authentication technologies, and this paper proposes a mutual authentication scheme based on soft token in combination of HASH function, symmetric encryption, and challenge/response mechanism. Finally, analysis on the scheme indicates that this scheme is of such capabilities as protection of user identity information, prevention of ID authentication attack, including playback attack, impersonation attack and exhaustive attack, etc. ) , and could achieve mutual authentication.
出处
《贵州大学学报(自然科学版)》
2011年第5期108-111,共4页
Journal of Guizhou University:Natural Sciences
关键词
EIM
双向认证
软令牌
重放攻击
穷举攻击
EIM
mutual authentication
soft token
playback attack
exhaustive attack