首页> 外文会议>IEEE International Conference on Computer and Communications >An Improvement of the Remote Authentication Scheme for Anonymous Users Using an Elliptic Curve Cryptosystem
【24h】

An Improvement of the Remote Authentication Scheme for Anonymous Users Using an Elliptic Curve Cryptosystem

机译:椭圆曲线密码体制对匿名用户远程认证方案的改进

获取原文

摘要

It is convenient to obtain the information resources via intelligent devices over cloud systems. The user authentication mechanism is a fundamental tool for ensuring the validity of communicating parties and securing communications among the communicating party. Recently, Zhang et al. proposed a new remote authentication scheme for anonymous users using an elliptic curve cryptosystem. Their scheme could achieve the mutual authentication and forward security. They claimed that their scheme could withstand various attacks by employing BAN-logic formal methods. They claimed that their scheme could withstand the preserving anonymity and non-traceability, perfect forward secrecy, offline password guessing attacks, forgery attacks, server impersonating attacks, known key attacks, and reply attacks. However, we will show that their scheme is vulnerable to forgery attacks, server impersonating attacks, and man-in-the-middle attacks. In this article, we also propose an improved anonymous user authentication scheme proposed by Zhang et al. to withstand the vulnerability in their scheme.
机译:通过云系统上的智能设备获取信息资源非常方便。用户认证机制是用于确保通信方的有效性并确保通信方之间的通信的基本工具。最近,张等人。提出了一种新的使用椭圆曲线密码系统的匿名用户远程身份验证方案。他们的方案可以实现相互认证和转发安全性。他们声称,他们的方案可以通过采用BAN逻辑形式方法来承受各种攻击。他们声称他们的方案可以承受保留的匿名性和不可追溯性,完美的前向机密性,脱机密码猜测攻击,伪造攻击,服务器模拟攻击,已知的密钥攻击和回复攻击。但是,我们将证明它们的方案容易受到伪造攻击,服务器模拟攻击和中间人攻击。在本文中,我们还提出了一种由Zhang等人提出的改进的匿名用户身份验证方案。承受其计划中的漏洞。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号