跳過導覽列.
首頁

An Extended Multi-Server-Based User Authentication and Key Agreement Scheme with User Anonymity

期刊類型: 
SCI/SSCI
作者姓名: 
Chun-Ta Li, Cheng-Chi Lee, Chi-Yao Weng, Chun-I Fan
期刊名稱: 
KSII Transactions on Internet and Information Systems
卷:期: 
7:1
年份: 
2013
頁數: 
119-131.
論文摘要: 
With the explosive growth of computer networks, many remote service providing servers and multi-server network architecture are provided and it is extremely inconvenient for users to remember numerous different identities and passwords. Therefore, it is important to provide a mechanism for a remote user to use single identity and password to access multi-server network architecture without repetitive registration and various multi-server authentication schemes have been proposed in recent years. Recently, Tsaur et al. proposed an efficient and secure smart card based user authentication and key agreement scheme for multi-server environments. They claimed that their scheme satisfies all of the requirements needed for achieving secure password authentication in multi-server environments and gives the formal proof on the execution of the proposed authenticated key agreement scheme. However, we find that Tsaur et al.'s scheme is still vulnerable to impersonation attack and many logged-in users' attack. We propose an extended scheme that not only removes the aforementioned weaknesses on their scheme but also achieves user anonymity for hiding login user's real identity. Compared with other previous related schemes, our proposed scheme keeps the efficiency and security and is more suitable for the practical applications.
發表狀態: 
已發表
關鍵字: 
Identity, Key Agreement, Password, Smart Card, Multi-Server Architecture, User Anonymity, User Authentication