摘要
提出了一种在智能卡中实现的基于单向散列函数的远程身份鉴别方案 ,用户能自己选择口令并且系统不需要维护任何与用户口令相关的信息 ,系统中用户数量不受限制 .用户利用智能卡以及口令便可成功地登录到远程系统 ,攻击者不能从公开或传送的信息中获得用户秘密信息 ,也不能冒充别的合法用户 .此外 ,本方案还能抵抗登录请求的重播 .
A remote password authentication scheme based on one way hash function was proposed. In this scheme, any user can freely choose his password in the card initialization phase. There is no limitation of the number of the users, and there is no need for the system to keep the passwords of the users. Using his password and smart card, any legal user can log into the remote system successfully. According to the analysis, intruders cannot obtain any secret information from the public information or transmitted messages and impersonate another legal user. In addition, this scheme can withstand the attack of replaying previously intercepted login requests.
出处
《上海交通大学学报》
EI
CAS
CSCD
北大核心
2002年第6期891-893,共3页
Journal of Shanghai Jiaotong University
基金
高等学校重点实验室访问学者基金资助项目