A provably secure anonymous authentication scheme for Session Initiation Protocol

被引:16
|
作者
Chaudhry, Shehzad Ashraf [1 ]
Khan, Imran [1 ]
Irshad, Azeem [1 ]
Ashraf, Muhammad Usman [1 ]
Khan, Muhammad Khurram [2 ]
Ahmad, Hafiz Farooq [3 ]
机构
[1] Int Islamic Univ, Dept Comp Sci & Software Engn, Islamabad, Pakistan
[2] King Saud Univ, Ctr Excellence Informat Assurance, Riyadh, Saudi Arabia
[3] King Faisal Univ, Coll Comp Sci & Informat Technol, Alahssa, Saudi Arabia
关键词
password; authentication; key agreement; provable security; impersonation attack; correctness; PROVERIF; KEY AGREEMENT SCHEME; SIP AUTHENTICATION; MUTUAL AUTHENTICATION; NETWORKS;
D O I
10.1002/sec.1672
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Recently, Lu et al. presented a mutual authentication scheme for Session Initiation Protocol. Lu et al. claimed their scheme provides safeguard against familiar attacks and offers efficient authentication facility. However, this paper divulges that the scheme of Lu et al. is prone to server and user impersonation attacks. Additionally, the scheme of Lu et al. implicates correctness concerns. Consequently, an enhanced scheme is proposed, not only to resolve correctness concerns but also to provide robustness against server and user impersonation attacks. The proposed scheme makes use of a user-specific secret parameter to deal with the security and correctness issues. The formal and informal security analysis proves the robustness and efficiency of the proposed scheme against all familiar attacks. Furthermore, security analysis is also substantiated through popular automated tool PROVERIF. Copyright (C) 2016 John Wiley & Sons, Ltd.
引用
收藏
页码:5016 / 5027
页数:12
相关论文
共 50 条
  • [1] An anonymous and secure authentication and key agreement scheme for session initiation protocol
    Hao Lin
    Fengtong Wen
    Chunxia Du
    Multimedia Tools and Applications, 2017, 76 : 2315 - 2329
  • [2] An anonymous and secure authentication and key agreement scheme for session initiation protocol
    Lin, Hao
    Wen, Fengtong
    Du, Chunxia
    MULTIMEDIA TOOLS AND APPLICATIONS, 2017, 76 (02) : 2315 - 2329
  • [3] Secure authentication scheme for session initiation protocol
    Yang, CC
    Wang, RC
    Liu, WT
    COMPUTERS & SECURITY, 2005, 24 (05) : 381 - 386
  • [4] Provably secure three-factor authentication and key agreement scheme for session initiation protocol
    Challa, Sravani
    Das, Ashok Kumar
    Kumari, Saru
    Odelu, Vanga
    Wu, Fan
    Li, Xiong
    SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (18) : 5412 - 5431
  • [5] A Provably Secure, Lightweight Protocol for Anonymous Authentication
    Katz, Jonathan
    SECURITY AND CRYPTOGRAPHY FOR NETWORKS (SCN 2022), 2022, 13409 : 271 - 288
  • [6] A secure and efficient mutual authentication scheme for session initiation protocol
    Yanrong Lu
    Lixiang Li
    Haipeng Peng
    Yixian Yang
    Peer-to-Peer Networking and Applications, 2016, 9 : 449 - 459
  • [7] A secure and efficient mutual authentication scheme for session initiation protocol
    Lu, Yanrong
    Li, Lixiang
    Peng, Haipeng
    Yang, Yixian
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2016, 9 (02) : 449 - 459
  • [8] An anonymous and provably secure authentication scheme for mobile user
    Islam, S. K. Hafizul
    Obaidat, Mohammad S.
    Amin, Ruhul
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2016, 29 (09) : 1529 - 1544
  • [9] Improving an Anonymous and Provably Secure Authentication Protocol for a Mobile User
    Moon, Jongho
    Lee, Youngsook
    Kim, Jiye
    Won, Dongho
    SECURITY AND COMMUNICATION NETWORKS, 2017,
  • [10] A provably secure and anonymous message authentication scheme for smart grids
    Li, Xiong
    Wu, Fan
    Kumari, Saru
    Xu, Lili
    Sangaiah, Arun Kumar
    Choo, Kim-Kwang Raymond
    JOURNAL OF PARALLEL AND DISTRIBUTED COMPUTING, 2019, 132 : 242 - 249