期刊文献+

基于标识符的Android客户端身份认证方案 被引量:3

Identity authentication scheme of Android client based on identifiers
下载PDF
导出
摘要 利用Android移动终端软硬件自有的标识符信息,依靠Android系统这一可信第三方,确保标识符信息的真实可信,结合密码学中Hash函数以及异或、连接等运算构造出客户端应用的身份认证信息生成算法。通过对传统移动应用的账户注册和登录过程进行研究,将身份信息的生成和验证过程放在服务器端,使用户免去设置账户信息及口令这一繁琐且极易暴露隐私的过程,完成一种新型的身份认证方案。最后,对方案的安全性和效率进行了分析,结果表明,新的方案具有较强的安全性和较高的便捷性。 The Android mobile terminal's own identifier information was used, which was credibly ensured by the Android system, then combining the Hash function and operation such as xor or connection, an algorithm of authen- tication information generation for the Android client was created. The traditional mobile client's process of register and login were analyzed, putting the identity information generation and authentication on the sever. A novel authen- tication scheme was constructed, which made the users free from the cumbersome authentication process and pri- vacy divulges. Finally, the security and efficiency of the scheme were analyzed. The results show that the new scheme has strong security and high convenience.
作者 王亚伟 彭长根 丁红发 周凯 WANG Ya-wei PENG Chang-gen DING Hong-fa ZHOU Kai(College of Computer Science & Technology, Guizhou University, Guiyang 550025, China Guizhou Provincial Key Laboratory of Public Big Data, Guizhou University, Guiyang 550025, China Institute of Cryptography & Data Security, Guizhou University, Guiyang 550025, China College of Mathematics and Statistics, Guizhou University, Guiyang 550025, China)
出处 《网络与信息安全学报》 2017年第4期32-38,共7页 Chinese Journal of Network and Information Security
基金 国家自然科学基金资助项目(No.61662009 No.61262073 No.61363068) 国家统计局全国统计科学研究重点基金资助项目(No.2013LZ46) 贵州省统计科研基金资助项目(No.201511) 贵州省哲学社会科学规划青年课题基金资助项目(No.16GZQN06)~~
关键词 标识符 Android客户端 认证模型 身份认证信息生成算法 identifier, Android client, authentication model, algorithm of authentication information generation
  • 相关文献

参考文献10

二级参考文献233

  • 1邱慧敏,杨义先,胡正名.一种基于椭圆曲线密码机制的用户认证方案设计[J].计算机工程与应用,2005,41(3):28-30. 被引量:8
  • 2张虎强,洪佩琳,李津生,黄冠尧.用户名密码认证方案的安全性分析及解决方案[J].计算机工程与应用,2006,42(33):102-106. 被引量:9
  • 3Haller N.RFC 1760 The S/KEY one-time password system(OTP)[S]. 1995-02.
  • 4Tsuji T,Kamioka T,Shimizu A.Simple and secure password authentication protocol, Ver.2(SAS-2), OIS2002-30[R].IEICE, 2002,.
  • 5Tsuji T,Shimizu A.An impersonation attack on one-time password authentication protocol OSPA[J].IEICE Trans Commun,2003,E86-B (7):2182-2185.
  • 6Tsuji T,Shimizu A.One-time password authentication protocol against theft attacks[J].IEICE Trans Commun, 2004, E87-B(3 ) : 523-529.
  • 7Lin C,Sun H,Hwang T.Attacks and solutions on strong password authentication[J].IEICE Trans Commun,2001,Vol.E84-B(9):2622- 2627.
  • 8Lee S W,Kim H S,Yoo K Y.Cryptanalysis of a user authentication scheme using hash functions[J].Operating Systems Review,2004,38 ( 1 ) :24-28.
  • 9中国互联网络信息中心.第27次中国互联网络发展状况统计报告,2011,(27):18-20.
  • 10工业和信息化部电信研究院.移动互联网白皮书.2011.10-28..

共引文献501

同被引文献8

引证文献3

二级引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部