期刊文献+
共找到5篇文章
< 1 >
每页显示 20 50 100
An anonymous and efficient remote biometrics user authentication scheme in a multi server environment 被引量:7
1
作者 Peng JIANG Qiaoyan WEN Wenmin LI Zhengping JIN Hua ZHANG 《Frontiers of Computer Science》 SCIE EI CSCD 2015年第1期142-156,共15页
As service demands rise and expand single-server user authentication has become unable to satisfy actual application demand. At the same time identity and password based authentication schemes are no longer adequate b... As service demands rise and expand single-server user authentication has become unable to satisfy actual application demand. At the same time identity and password based authentication schemes are no longer adequate because of the insecurity of user identity and password. As a result biometric user authentication has emerged as a more reliable and attractive method. However, existing biometric authentication schemes are vulnerable to some common attacks and provide no security proof, some of these biometric schemes are also either inefficient or lack sufficient concern for privacy. In this paper, we propose an anonymous and efficient remote biometric user authentication scheme for a multi-server architecture with provable security. Through theoretical mathematic deduction, simulation implementation, and comparison with related work, we demonstrate that our approach can remove the aforementioned weaknesses and is well suited for a multi- server environment. 展开更多
关键词 biometrics remote authentication multi-server architecture smart card
原文传递
Dynamic Identity Based Authentication Protocol for Two-Server Architecture
2
作者 Sandeep K. Sood 《Journal of Information Security》 2012年第4期326-334,共9页
Most of the password based authentication protocols make use of the single authentication server for user's authentication. User's verifier information stored on the single server is a main point of susceptibi... Most of the password based authentication protocols make use of the single authentication server for user's authentication. User's verifier information stored on the single server is a main point of susceptibility and remains an attractive target for the attacker. On the other hand, multi-server architecture based authentication protocols make it difficult for the attacker to find out any significant authentication information related to the legitimate users. In 2009, Liao and Wang proposed a dynamic identity based remote user authentication protocol for multi-server environment. However, we found that Liao and Wang's protocol is susceptible to malicious server attack and malicious user attack. This paper presents a novel dynamic identity based authentication protocol for multi-server architecture using smart cards that resolves the aforementioned flaws, while keeping the merits of Liao and Wang's protocol. It uses two-server paradigm by imposing different levels of trust upon the two servers and the user's verifier information is distributed between these two servers known as the service provider server and the control server. The proposed protocol is practical and computational efficient because only nonce, one-way hash function and XOR operations are used in its implementation. It provides a secure method to change the user's password without the server's help. In e-commerce, the number of servers providing the services to the user is usually more than one and hence secure authentication protocols for multi-server environment are required. 展开更多
关键词 authentication Protocol smart card DYNAMIC IDENTITY multi-server architecture PASSWORD
下载PDF
基于生物特征的鲁棒远程用户认证方案 被引量:2
3
作者 张韶远 卢建朱 《计算机工程》 CAS CSCD 2012年第3期137-138,共2页
将生物特征信息、单向哈希函数和智能卡等技术相结合,提出一种基于生物特征识别的身份认证方案。利用时戳生成一次性共享信息,以提高系统的鲁棒性。分析结果证明,该方案可防止伪装攻击、重放攻击和拒绝服务攻击。用户与服务器仅需2次握... 将生物特征信息、单向哈希函数和智能卡等技术相结合,提出一种基于生物特征识别的身份认证方案。利用时戳生成一次性共享信息,以提高系统的鲁棒性。分析结果证明,该方案可防止伪装攻击、重放攻击和拒绝服务攻击。用户与服务器仅需2次握手即可实现相互认证,由此节约系统的通信成本,提高认证效率。 展开更多
关键词 基于生物特征的认证 单向哈希函数 时间戳 远程用户 智能卡 可信第三方 一次性共享密钥
下载PDF
基于生物统计信息的多因子远程身份验证协议 被引量:18
4
作者 岳静 邓利红 《南京理工大学学报》 EI CAS CSCD 北大核心 2019年第1期41-47,共7页
为了提高多服务器环境的远程身份验证的安全保障,提出一种包括生物统计信息、椭圆曲线密码和智能卡的多因子身份验证协议。该协议包括设置阶段、服务器注册阶段、用户注册阶段、登录阶段、验证阶段和密码更改阶段6个阶段。在注册阶段,... 为了提高多服务器环境的远程身份验证的安全保障,提出一种包括生物统计信息、椭圆曲线密码和智能卡的多因子身份验证协议。该协议包括设置阶段、服务器注册阶段、用户注册阶段、登录阶段、验证阶段和密码更改阶段6个阶段。在注册阶段,应用了模糊验证器,将生物特征模板转换为随机字符串,避免了生物特征模板的噪声影响;在登陆阶段,使用椭圆曲线加密点乘,明显降低了双线性配对运算的成本。BAN逻辑证明了该协议可实现安全会话密钥协商和双向身份验证,协议安全性分析表明,所提协议可以抵御常见的多种安全性攻击,且注册和登陆阶段的总体计算成本较低。 展开更多
关键词 远程身份验证 生物统计信息 椭圆曲线密码 智能卡 BAN逻辑
下载PDF
一种安全性增强的三因子远程用户身份认证方案研究
5
作者 余红芳 艾琼 《软件导刊》 2017年第12期188-193,共6页
如今,远程用户通过互联网可以随时随地访问世界各地的各种服务,但同时各种数据泄露和隐私安全问题也不断凸显。为了保证用户访问服务时的身份合法性,各种远程用户身份认证方案不断被提出。由于现有方案仍存在各种攻击威胁,因而提出一种... 如今,远程用户通过互联网可以随时随地访问世界各地的各种服务,但同时各种数据泄露和隐私安全问题也不断凸显。为了保证用户访问服务时的身份合法性,各种远程用户身份认证方案不断被提出。由于现有方案仍存在各种攻击威胁,因而提出一种改进的基于动态ID、智能卡和生物特征的三因子远程用户身份认证方案。安全性分析表明,该方案可以抵抗各种攻击,提高了用户身份认证的安全性。 展开更多
关键词 动态ID 生物特征 智能卡 远程用户身份认证 三因子
下载PDF
上一页 1 下一页 到第
使用帮助 返回顶部