An enhanced smart card and dynamic ID based remote multi-server user authentication scheme

被引:0
|
作者
Nitish Andola
Sourabh Prakash
Raghav Gahlot
S. Venkatesan
Shekhar Verma
机构
[1] Jaypee Institute of Information Technology,Computer Science & Engineering and Information Technology
[2] Indian Institute of Information Technology Allahabad,undefined
来源
Cluster Computing | 2022年 / 25卷
关键词
Authentication; Access control; AVISPA; BAN logic; CUDA; Multi-server environment; Smart card;
D O I
暂无
中图分类号
学科分类号
摘要
Organizations often use smart card-based user authentication for remote access. The research community has put forward dynamic identity based remote user authentication schemes for distributed multi-server environment to safeguard the connection between user and server. Recently, Qiu et al. proposed an efficient smart card based remote user authentication scheme for the multi-server environment, in which they uphold their scheme provides mutual authentication and key agreement, user-anonymity, resistance against various kind of attacks. This paper will manifest that if the adversary is successful in stealing a smart card, then their schemes are vulnerable to masquerade attack, server spoofing attack, and password guessing attack. We overcome their flaws and propose an enhanced anonymous scheme where whenever the user wants to log into a server, the user identity is changed dynamically before login. And also, the scheme resists all possible attacks. We compared our scheme with respect to the related scheme, used BAN logic for verification of correctness of mutual key agreement and AVISPA to prove scheme is safe. We have provided formal security proofs for our scheme.
引用
收藏
页码:3699 / 3717
页数:18
相关论文
共 50 条
  • [41] A Privacy-Preserving Dynamic ID-Based Remote User Authentication Scheme with Access Control for Multi-Server Environment
    Shao, Min-Hua
    Chin, Ying-Chih
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2012, E95D (01): : 161 - 168
  • [42] Security Improvement on a Dynamic ID-Based Remote User Authentication Scheme with Session Key Agreement for Multi-server Environment
    Kim, Mijin
    Park, Namje
    Won, Dongho
    COMPUTER APPLICATIONS FOR SECURITY, CONTROL AND SYSTEM ENGINEERING, 2012, 339 : 122 - +
  • [43] Weaknesses of a remote user authentication scheme using smart cards for multi-server architecture
    Ku, WC
    Chang, ST
    Chiang, MH
    IEICE TRANSACTIONS ON COMMUNICATIONS, 2005, E88B (08) : 3451 - 3454
  • [44] Towards secure and efficient user authentication scheme using smart card for multi-server environments
    Chen, Te-Yu
    Lee, Cheng-Chi
    Hwang, Min-Shiang
    Jan, Jinn-Ke
    JOURNAL OF SUPERCOMPUTING, 2013, 66 (02): : 1008 - 1032
  • [45] Towards secure and efficient user authentication scheme using smart card for multi-server environments
    Te-Yu Chen
    Cheng-Chi Lee
    Min-Shiang Hwang
    Jinn-Ke Jan
    The Journal of Supercomputing, 2013, 66 : 1008 - 1032
  • [46] Breaking a remote user authentication scheme for multi-server architecture
    Cao, Xiang
    Zhong, Sheng
    IEEE COMMUNICATIONS LETTERS, 2006, 10 (08) : 580 - 581
  • [47] A new remote user authentication scheme for multi-server architecture
    Lin, IC
    Hwang, MS
    Li, LH
    FUTURE GENERATION COMPUTER SYSTEMS, 2003, 19 (01) : 13 - 22
  • [48] An enhanced smart card based remote user password authentication scheme
    Li, Xiong
    Niu, Jianwei
    Khan, Muhammad Khurram
    Liao, Junguo
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2013, 36 (05) : 1365 - 1371
  • [49] Cryptanalysis of a Robust Smart Card Authentication Scheme for Multi-server Architecture
    Li, Xiong
    Kumari, Saru
    Khan, Muhammad Khurram
    Liao, Junguo
    Liang, Wei
    2014 INTERNATIONAL SYMPOSIUM ON BIOMETRICS AND SECURITY TECHNOLOGIES (ISBAST), 2014, : 120 - 123
  • [50] An enhanced user authentication scheme for multi-server Internet services
    Tsaur, WJ
    Wu, CC
    Lee, WB
    APPLIED MATHEMATICS AND COMPUTATION, 2005, 170 (01) : 258 - 266