Robust and Efficient Authentication Scheme for Session Initiation Protocol

被引:21
|
作者
Lu, Yanrong [1 ,2 ]
Li, Lixiang [1 ,2 ]
Yang, Yixian [1 ,2 ]
机构
[1] Beijing Univ Posts & Telecommun, State Key Lab Networking & Switching Technol, Informat Secur Ctr, Beijing 100876, Peoples R China
[2] Beijing Univ Posts & Telecommun, Natl Engn Lab Disaster Backup & Recovery, Beijing 100876, Peoples R China
基金
中国国家自然科学基金; 北京市自然科学基金;
关键词
KEY AGREEMENT SCHEME; PASSWORD AUTHENTICATION; SECURE AUTHENTICATION; ACCESS-CONTROL; SIP;
D O I
10.1155/2015/894549
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
The session initiation protocol (SIP) is a powerful application-layer protocol which is used as a signaling one for establishing, modifying, and terminating sessions among participants. Authentication is becoming an increasingly crucial issue when a user asks to access SIP services. Hitherto, many authentication schemes have been proposed to enhance the security of SIP. In 2014, Arshad and Nikooghadam proposed an enhanced authentication and key agreement scheme for SIP and claimed that their scheme could withstand various attacks. However, in this paper, we show that Arshad and Nikooghadam's authentication scheme is still susceptible to key-compromise impersonation and trace attacks and does not provide proper mutual authentication. To conquer the flaws, we propose a secure and efficient ECC-based authentication scheme for SIP. Through the informal and formal security analyses, we demonstrate that our scheme is resilient to possible known attacks including the attacks found in Arshad et al.'s scheme. In addition, the performance analysis shows that our scheme has similar or better efficiency in comparison with other existing ECC-based authentication schemes for SIP.
引用
收藏
页数:9
相关论文
共 50 条
  • [31] A secure authentication scheme with anonymity for session initiation protocol using elliptic curve cryptography
    Zezhong Zhang
    Qingqing Qi
    Neeraj Kumar
    Naveen Chilamkurti
    Hwa-Young Jeong
    Multimedia Tools and Applications, 2015, 74 : 3477 - 3488
  • [32] An Advanced Elliptic Curve Cryptography based Mutual Authentication Scheme for Session Initiation Protocol
    Lu, Yanrong
    Li, Lixiang
    Peng, Haipeng
    Yang, Yixian
    INFORMATION TECHNOLOGY AND CONTROL, 2016, 45 (04): : 393 - 400
  • [33] Efficient ID-based authentication and key agreement protocols for the session initiation protocol
    Kilinc, Haci Hakan
    Allaberdiyev, Yolguly
    Yanik, Tugrul
    Erdem, Serdar Suer
    TURKISH JOURNAL OF ELECTRICAL ENGINEERING AND COMPUTER SCIENCES, 2015, 23 (02) : 560 - 579
  • [34] Provably secure three-factor authentication and key agreement scheme for session initiation protocol
    Challa, Sravani
    Das, Ashok Kumar
    Kumari, Saru
    Odelu, Vanga
    Wu, Fan
    Li, Xiong
    SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (18) : 5412 - 5431
  • [35] Enhanced authentication protocol for session initiation protocol using smart card
    Zhu, Wenxia
    Chen, Jianhua
    He, Debiao
    INTERNATIONAL JOURNAL OF ELECTRONIC SECURITY AND DIGITAL FORENSICS, 2015, 7 (04) : 330 - 342
  • [36] An improved authentication protocol for session initiation protocol using smart card
    Hang Tu
    Neeraj Kumar
    Naveen Chilamkurti
    Seungmin Rho
    Peer-to-Peer Networking and Applications, 2015, 8 : 903 - 910
  • [37] An improved authentication protocol for session initiation protocol using smart card
    Tu, Hang
    Kumar, Neeraj
    Chilamkurti, Naveen
    Rho, Seungmin
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2015, 8 (05) : 903 - 910
  • [38] A Robust and Efficient SIP Authentication Scheme
    Mohammadi-Nodooshan, A.
    Darmani, Y.
    Jalili, R.
    Nourani, M.
    Haghighi, M. Sayad
    SCIENTIA IRANICA TRANSACTION D-COMPUTER SCIENCE & ENGINEERING AND ELECTRICAL ENGINEERING, 2010, 17 (01): : 25 - 38
  • [39] A Robust and Efficient SIP Authentication Scheme
    Mohammadi-Nodooshan, Alireza
    Darmani, Yousef
    Jalili, Rasool
    Nourani, Mehrdad
    ADVANCES IN COMPUTER SCIENCE AND ENGINEERING, 2008, 6 : 551 - +
  • [40] An anonymous and untraceable password-based authentication scheme for session initiation protocol using smart cards
    Farash, Mohammad Sabzinejad
    Attari, Mahmoud Ahmadian
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2016, 29 (13) : 1956 - 1967