Multi-Factor Identity Authenticated Key Agreement Protocol

Article Preview

Abstract:

This paper proposes scheme can achieve mutual authentication and session key agreement based on multi-factor. It improves the scheme proposed by Chuang et al on protecting from the stolen smart card attack, impersonation attack, server spoofing attack and man-in-the-middle attack, and guaranteeing on the forward security. It solves the problem of weak resistance to attacks in single-factor authentication approaches, by combining the smart card with biometrics and password. It also guarantees the security of mutual identity authentication between users and servers and that of session keys. It consumes more computing resources that the Chuang’s scheme, but it can resist to several known attacks efficiently.

You might also be interested in these eBooks

Info:

Periodical:

Pages:

5597-5602

Citation:

Online since:

May 2014

Export:

Price:

Permissions CCC:

Permissions PLS:

Сopyright:

© 2014 Trans Tech Publications Ltd. All Rights Reserved

Share:

Citation:

* - Corresponding Author

[1] Tsai J L. Efficient multi-server authentication scheme based on one-way hash function without verification table[J]. Computers & Security, 2008, 27(3): 115-121.

DOI: 10.1016/j.cose.2008.04.001

Google Scholar

[2] Liao Y P, Wang S S. A secure dynamic ID based remote user authentication scheme for multi-server environment[J]. Computer Standards & Interfaces, 2009, 31(1): 24-29.

DOI: 10.1016/j.csi.2007.10.007

Google Scholar

[3] Yang D, Yang B. A biometric password-based multi-server authentication scheme with smart card[C]. Computer Design and Applications (ICCDA), 2010 International Conference on. IEEE, 2010, 5: V5-554-V5-559.

DOI: 10.1109/iccda.2010.5541128

Google Scholar

[4] Yoon E J, Yoo K Y. Robust biometrics-based multi-server authentication with key agreement scheme for smart cards on elliptic curve cryptosystem [J]. The Journal of Supercomputing, 2010, 1-21.

DOI: 10.1007/s11227-010-0512-1

Google Scholar

[5] He D. Security flaws in a biometrics-based multi-server authentication with key agreement scheme[J]. IACR Cryptology ePrint Archive, 2011, 2011: 365.

Google Scholar

[6] Chuang M C, Chen M C. An anonymous multi-server authenticated key agreement scheme based on trust computing using smart cards and biometrics [J]. Expert Systems with Applications, 2014, 41(4): 1411-1418.

DOI: 10.1016/j.eswa.2013.08.040

Google Scholar

[7] Mishra D. Cryptanalysis of Multi-Server Authenticated Key Agreement Scheme Based on Trust Computing Using Smart Cards and Biometrics [J]. arXiv preprint arXiv: 1401. 4790, (2014).

DOI: 10.1016/j.eswa.2013.08.040

Google Scholar