An improved smart card based authentication scheme for session initiation protocol

被引:0
|
作者
Saru Kumari
Shehzad Ashraf Chaudhry
Fan Wu
Xiong Li
Mohammad Sabzinejad Farash
Muhammad Khurram Khan
机构
[1] Ch. Charan Singh University,Department of Mathematics
[2] International Islamic University,Department of Computer Science & Software Engineering
[3] Xiamen Institute of Technology,Department of Computer Science and Engineering
[4] Hunan University of Science and Technology,School of Computer Science and Engineering
[5] Nanjing University of Information Science and Technology,Department of Mathematics and Computer Sciences
[6] Kharazmi University,Center of Excellence in Information Assurance (CoEIA)
[7] King Saud University,undefined
关键词
Authentication; Security; Anonymity and privacy; Impersonation attack; Provable security; ProVerif;
D O I
暂无
中图分类号
学科分类号
摘要
Sessioninitiation protocol (SIP) reformed the controlling routine of voice over Internet Protocol based communication over public channels. SIP is inherently insecure because of underlying open text architecture. A number of solutions are proposed to boost SIP security. Very recently Farash (Peer to Peer Netw. Appl. 1–10, 2014) proposed an enhanced protocol to improve the security of Tu et al.’s protocol (Peer to Peer Netw. Appl. 1–8, 2014). Further, Farash claimed his protocol to be secure against all known attacks. However, in this paper we show that Farash’s protocol is insecure against impersonation attack, password guessing attack, lacks user anonymity and is vulnerable to session-specific temporary information attack. Further, we have proposed an upgraded protocol to enhance the security. The security and performance analysis shows that the proposed protocol reduced one point multiplication as compared with Farash’s protocol, while resisting all known attacks. We have proved the security of proposed protocol using automated tool ProVerif.
引用
收藏
页码:92 / 105
页数:13
相关论文
共 50 条
  • [31] An improved mutual authentication scheme for smart card secure messaging
    Dang, LJ
    Koi, WD
    Xiao, YX
    PROCEEDINGS OF THE IEEE INTERNATIONAL CONFERENCE ON E-COMMERCE TECHNOLOGY FOR DYNAMIC E-BUSINESS, 2004, : 261 - 264
  • [32] Cryptanalysis and improvement of an 'improved remote authentication scheme with smart card'
    Holbl, Marko
    Welzer, Tatjana
    ARES 2008: PROCEEDINGS OF THE THIRD INTERNATIONAL CONFERENCE ON AVAILABILITY, SECURITY AND RELIABILITY, 2008, : 1301 - 1305
  • [33] An Advanced Elliptic Curve Cryptography based Mutual Authentication Scheme for Session Initiation Protocol
    Lu, Yanrong
    Li, Lixiang
    Peng, Haipeng
    Yang, Yixian
    INFORMATION TECHNOLOGY AND CONTROL, 2016, 45 (04): : 393 - 400
  • [34] A robust mutual authentication scheme for session initiation protocol with key establishment
    Sureshkumar, Venkatasamy
    Amin, Ruhul
    Anitha, R.
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2018, 11 (05) : 900 - 916
  • [35] An anonymous and secure authentication and key agreement scheme for session initiation protocol
    Hao Lin
    Fengtong Wen
    Chunxia Du
    Multimedia Tools and Applications, 2017, 76 : 2315 - 2329
  • [36] A robust mutual authentication scheme for session initiation protocol with key establishment
    Venkatasamy Sureshkumar
    Ruhul Amin
    R. Anitha
    Peer-to-Peer Networking and Applications, 2018, 11 : 900 - 916
  • [37] Robust Mutual Authentication with a Key Agreement Scheme for the Session Initiation Protocol
    Yoon, Eun-Jun
    Shin, Yong-Nyuo
    Jeon, Il-Soo
    Yoo, Kee-Young
    IETE TECHNICAL REVIEW, 2010, 27 (03) : 203 - 213
  • [38] A Robust Mutual Authentication with a Key Agreement Scheme for Session Initiation Protocol
    Chen, Chien-Ming
    Xiang, Bin
    Wang, King-Hang
    Yeh, Kuo-Hui
    Wu, Tsu-Yang
    APPLIED SCIENCES-BASEL, 2018, 8 (10):
  • [39] An anonymous and secure authentication and key agreement scheme for session initiation protocol
    Lin, Hao
    Wen, Fengtong
    Du, Chunxia
    MULTIMEDIA TOOLS AND APPLICATIONS, 2017, 76 (02) : 2315 - 2329
  • [40] An Improved Authentication and Key Agreement scheme for Session Initial Protocol
    Wu, Libing
    Fan, Jing
    Xie, Yong
    Wang, Jing
    KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2017, 11 (08): : 4025 - 4042