摘要
智能卡与口令相结合的身份认证方式既可保留使用强密钥优势,又具有使用方便的特点,是一种理想的安全双因子认证方式。当前许多公开的口令认证方案,要么需要较强的计算环境而难于采用智能卡快速实现,要么不能抵抗离线口令猜测攻击或服务端内部攻击而存在安全缺陷。提出一种非平衡型口令认证方案,基于智能卡和用户口令双因子设计,具有简便高效、口令安全、双向认证特点,能够抵御离线口令猜测攻击和服务端内部攻击,可用于满足设备开机时的安全认证需求。
Remote user authentication protocol using smart cards togeth -factor scheme, which has the advantage of secure and convenience er with password is an efficient double At present, among the password authentication schemes, many of them can' t use smart card, because password authentication method needs complex computer operations. However, some password authentication method based on smart card can' t be against to guessing attack. To remedy these flaws, this paper proposes an efficient improvement over Xiao- Min Wang' s with more security, which can be against guessing attack and Server internal attack.
出处
《通信技术》
2014年第8期930-934,共5页
Communications Technology
基金
青年科学基金项目(No.61309034)~~
关键词
智能卡
口令
认证
smart card
password
authentication