Conditional access system (CAS) is a key technical component in digital TV broadcasting through which TV op-erators manage the appropriate rights of different subscribers in order to protect their commercial benefits....Conditional access system (CAS) is a key technical component in digital TV broadcasting through which TV op-erators manage the appropriate rights of different subscribers in order to protect their commercial benefits. The normal digital TV receiver can only receive and decode the pay TV programs scrambled by one specific CAS. In this paper, the authors proposed a smartcard conditional access interface (SCAI) scheme in order to make the digital TV receiver be a common receiving platform independent of any specific CAS employed at the broadcasting head-end. As a result, it only needs to include a common condi-tional access software package (CCAP) without any requirement of hardware modification in the receiver. Comparison between the two mentioned DVB-CI-based schemes showed that the cost of such kind receiver is greatly reduced. The main design points of the proposed scheme and its reference implementation’s architecture are presented in this paper. This scheme is also one of the candidate national standards for Chinese digital TV broadcasting industry.展开更多
With the advancement in internet technologies, the number of servers has increased remarkably to provide more services to the end users. These services are provided over the public channels, which are insecure and sus...With the advancement in internet technologies, the number of servers has increased remarkably to provide more services to the end users. These services are provided over the public channels, which are insecure and susceptible to interception, modification, and deletion. To provide security, registered entities are authenticated and then a session key is established between them to communicate securely. The conventional schemes anow a user to access services only after their independent registration with each desired server in a multiserver system. Therefore, a user must possess multiple smartcards and memorize various identities and passwords for obtaining services from multiple servers. This has led to the adoption of multiserver authentication in which a user accesses services of multiple servers after registering himself at only one central authority. Recently, Kumar and Om discussed a scheme for multiserver environment by using smartcard. Since the user-memorized passwords are of low entropy, it is possible for an attacker to guess them. This paper uses biometric information of user to enhance the security of the scheme by Kumar and Ore. Moreover, we conducted rigorous security analyses (informal and formal) in this study to prove the security of the proposed scheme against all known attacks. We also simulated our scheme by using the automated tool, ProVerif, to prove its secrecy and authentication properties. A comparative study of the proposed scheme with the existing related schemes shows its effectiveness.展开更多
In the literature, several dynamic ID-based remote user mutual authentication schemes are implemented using password, smartcard and Elliptic Curve Cryptography(ECC), however, none of them provides resilience against d...In the literature, several dynamic ID-based remote user mutual authentication schemes are implemented using password, smartcard and Elliptic Curve Cryptography(ECC), however, none of them provides resilience against different attacks. Therefore, there is a great need to design an efficient scheme for practical applications. In this paper, we proposed such a scheme in order to provide desired security attributes and computation efficiencies. Compared with other existing techniques, our scheme is more efficient and secured. In addition, our scheme is provably secure in the random oracle model under the hardness assumption of computational Diffie-Hellman problem.展开更多
基金Project (No. 200442) supported by the Electronics DevelopmentFoundation for the Key Industrialization Project of the Ministry of0Information Industry, China
文摘Conditional access system (CAS) is a key technical component in digital TV broadcasting through which TV op-erators manage the appropriate rights of different subscribers in order to protect their commercial benefits. The normal digital TV receiver can only receive and decode the pay TV programs scrambled by one specific CAS. In this paper, the authors proposed a smartcard conditional access interface (SCAI) scheme in order to make the digital TV receiver be a common receiving platform independent of any specific CAS employed at the broadcasting head-end. As a result, it only needs to include a common condi-tional access software package (CCAP) without any requirement of hardware modification in the receiver. Comparison between the two mentioned DVB-CI-based schemes showed that the cost of such kind receiver is greatly reduced. The main design points of the proposed scheme and its reference implementation’s architecture are presented in this paper. This scheme is also one of the candidate national standards for Chinese digital TV broadcasting industry.
文摘With the advancement in internet technologies, the number of servers has increased remarkably to provide more services to the end users. These services are provided over the public channels, which are insecure and susceptible to interception, modification, and deletion. To provide security, registered entities are authenticated and then a session key is established between them to communicate securely. The conventional schemes anow a user to access services only after their independent registration with each desired server in a multiserver system. Therefore, a user must possess multiple smartcards and memorize various identities and passwords for obtaining services from multiple servers. This has led to the adoption of multiserver authentication in which a user accesses services of multiple servers after registering himself at only one central authority. Recently, Kumar and Om discussed a scheme for multiserver environment by using smartcard. Since the user-memorized passwords are of low entropy, it is possible for an attacker to guess them. This paper uses biometric information of user to enhance the security of the scheme by Kumar and Ore. Moreover, we conducted rigorous security analyses (informal and formal) in this study to prove the security of the proposed scheme against all known attacks. We also simulated our scheme by using the automated tool, ProVerif, to prove its secrecy and authentication properties. A comparative study of the proposed scheme with the existing related schemes shows its effectiveness.
文摘In the literature, several dynamic ID-based remote user mutual authentication schemes are implemented using password, smartcard and Elliptic Curve Cryptography(ECC), however, none of them provides resilience against different attacks. Therefore, there is a great need to design an efficient scheme for practical applications. In this paper, we proposed such a scheme in order to provide desired security attributes and computation efficiencies. Compared with other existing techniques, our scheme is more efficient and secured. In addition, our scheme is provably secure in the random oracle model under the hardness assumption of computational Diffie-Hellman problem.