摘要
针对Li等人基于智能卡的多服务器身份认证方案,分析指出了其中存在的安全性问题,提出了一个改进的双因素动态身份鉴别方案。该方案为用户提供了一种关于身份注册信息的自我更新机制,用户可以在不与远程服务器通信的状态下,动态更新身份标志、口令和秘密参数等相关信息。另外,自验证的时间戳技术的借鉴利用,不仅避免了时钟同步问题,而且节约了产生随机数的开销。该方案还实现了用户的动态登录和对用户登录操作的可追踪性。新方案不仅继承了Li方案计算量低、存储量小的优点,而且还提高了认证方案的安全性和实用性,可以适用于实际的网络环境和应用。
This paper firstly analyzed some security problems in Li's identity based authentication scheme for multi-server architecture,and proposed a novel two-factor dynamic identity based scheme. The new scheme provided users with a self-updating mechanism to modify the registration information about the identity of the users without communicating with the remote server,dynamically updated status ID symbol,passwords and secret parameters and other related information. In addition,it used a self-verified timestamp technique to solve the problem of implementing clock synchronization and it could avoid the resource-consuming of generating nonce. The new scheme also provided the users' anonymity and traceability. This scheme can not only inherit the low computation and small memory space from Li's scheme,but also improve the security and usability of the authentication scheme. It is also easy to apply the scheme to the practical network and applications.
出处
《计算机应用研究》
CSCD
北大核心
2015年第4期1119-1122,共4页
Application Research of Computers
基金
国家自然科学基金资助项目(61272415
61272413
61133014)
广东省产学研及科技计划资助项目(2012A080102007
2011B090400324
2011B090400469
2012B040305008
2012B091000136
2012B091000038)
广东省高校工程研究中心项目(GCZX-A1103)
广州市科技计划项目(2013Y2-00071)
关键词
认证
动态身份
智能卡
安全性分析
多服务器环境
authentication
dynamic identity
smart card
cryptanalysis
multi-server system