首页 | 本学科首页   官方微博 | 高级检索  
     检索      

基于动态ID的远程认证方案的改进
引用本文:段晓毅,张其善,刘建伟.基于动态ID的远程认证方案的改进[J].北京航空航天大学学报,2007,33(5):565-567.
作者姓名:段晓毅  张其善  刘建伟
作者单位:北京航空航天大学 电子信息工程学院, 北京 100083
摘    要:智能卡由于具有低功耗、安全计算和便携性的特点,常常被用做身份认证终端.基于静态口令的认证方案不能由用户选择密钥并且需要在服务器保存一个密钥表,而基于动态ID的方案能解决这些问题.提出了新的方案,指出Liao-Lee-Hwang方案中不能抗偷窃攻击的缺点,并在其基础上做了改进.新的改进方案不仅继承了原方案中抗猜测攻击、实现共同认证、服务器不会泄露用户密钥的的优点,同时也避免了窃取攻击;并且新的改进方案在计算量上也小于Liao-Lee-Hwang的方案.

关 键 词:认证  智能卡  密钥  偷窃攻击
文章编号:1001-5965(2007)05-0565-03
收稿时间:2006-07-10
修稿时间:2006-07-10

Improved security enhancement for a dynamic ID-based remote user authentication scheme
Duan Xiaoyi,Zhang Qishan,Liu Jianwei.Improved security enhancement for a dynamic ID-based remote user authentication scheme[J].Journal of Beijing University of Aeronautics and Astronautics,2007,33(5):565-567.
Authors:Duan Xiaoyi  Zhang Qishan  Liu Jianwei
Institution:School of Electronics and Information Engineering, Beijing University of Aeronautics and Astronautics, Beijing 100083, China
Abstract:Smart cards are secure, compact and intelligent data carriers, which can offers strong authentication and guaranteed non- repudiation. With the traditional authentication solution, the static password is rarely altered and maintained in the verifier table on the server. This is bringing forth the important attacks of replay attacks, guessing attacks, modication attacks, and stolen-verier attacks. However, the dynamic ID-based authentication solution can solve the problem. I-En Liao et al proposed a dynamic ID-based user authentication scheme using smart cards. The scheme has a lot of advantages, such as avoiding a variety of attacks, mutual authentication and no verifier table, but it can′t resist to stolen attack. A improved scheme was presented to remedy their weaknesses. Compare with Liao-Lee-Hwang′s scheme, the improved scheme not only avoid stolen attacks but also reduce the computational costs.
Keywords:authentication  smart cards  password  stolen attack
本文献已被 CNKI 维普 万方数据 等数据库收录!
点击此处可从《北京航空航天大学学报》浏览原始摘要信息
点击此处可从《北京航空航天大学学报》下载免费的PDF全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号