An improved and provably secure privacy preserving authentication protocol for SIP

被引:0
|
作者
Shehzad Ashraf Chaudhry
Husnain Naqvi
Muhammad Sher
Mohammad Sabzinejad Farash
Mahmood Ul Hassan
机构
[1] International Islamic University,Department of Computer Science and Software Engineering
[2] Department of Mathematics and Computer Sciences Kharazmi University,undefined
关键词
Authentication; Authenticated key agreement; Elliptic curve cryptography; Impersonation attack; Provable security; ProVerif;
D O I
暂无
中图分类号
学科分类号
摘要
Session Initiation Protocol (SIP) has proved to be the integral part and parcel of any multimedia based application or IP-based telephony service that requires signaling. SIP supports HTTP digest based authentication, and is responsible for creating, maintaining and terminating sessions. To guarantee secure SIP based communication, a number of authentication schemes are proposed, typically most of these are based on smart card due to its temper resistance property. Recently Zhang et al. presented an authenticated key agreement scheme for SIP based on elliptic curve cryptography. However Tu et al. (Peer to Peer Netw. Appl 1–8, 2014) finds their scheme to be insecure against user impersonation attack, furthermore they presented an improved scheme and claimed it to be secure against all known attacks. Very recently Farash (Peer to Peer Netw. Appl 1–10, 2014) points out that Tu et al.’s scheme is vulnerable to server impersonation attack, Farash also proposed an improvement on Tu et al.’s scheme. However, our analysis in this paper shows that Tu et al.’s scheme is insecure against server impersonation attack. Further both Tu et al.’s scheme and Farash’s improvement do not protect user’s privacy and are vulnerable to replay and denial of services attacks. In order to cope with these limitations, we have proposed a privacy preserving improved authentication scheme based on ECC. The proposed scheme provides mutual authentication as well as resists all known attacks as mentioned by Tu et al. and Farash.
引用
收藏
页码:1 / 15
页数:14
相关论文
共 50 条
  • [1] An improved and provably secure privacy preserving authentication protocol for SIP
    Chaudhry, Shehzad Ashraf
    Naqvi, Husnain
    Sher, Muhammad
    Farash, Mohammad Sabzinejad
    ul Hassan, Mahmood
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2017, 10 (01) : 1 - 15
  • [2] A new provably secure authentication and key agreement protocol for SIP using ECC
    Wu, Liufei
    Zhang, Yuqing
    Wang, Fengjiao
    COMPUTER STANDARDS & INTERFACES, 2009, 31 (02) : 286 - 291
  • [3] SpreadMeNot : A Provably Secure and Privacy-Preserving Contact Tracing Protocol
    Tedeschi, Pietro
    Bakiras, Spiridon
    Di Pietro, Roberto
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (03) : 2500 - 2515
  • [4] An Enhanced Privacy Preserving, Secure and Efficient Authentication Protocol for VANET
    Khan, Safiullah
    Raza, Ali
    Hwang, Seong Oun
    CMC-COMPUTERS MATERIALS & CONTINUA, 2022, 71 (02): : 3703 - 3719
  • [5] A novel ECC-based provably secure and privacy-preserving multi-factor authentication protocol for cloud computing
    Shukla, Shivangi
    Patel, Sankita J.
    COMPUTING, 2022, 104 (05) : 1173 - 1202
  • [6] A novel ECC-based provably secure and privacy-preserving multi-factor authentication protocol for cloud computing
    Shivangi Shukla
    Sankita J. Patel
    Computing, 2022, 104 : 1173 - 1202
  • [7] A Provably Secure, Lightweight Protocol for Anonymous Authentication
    Katz, Jonathan
    SECURITY AND CRYPTOGRAPHY FOR NETWORKS (SCN 2022), 2022, 13409 : 271 - 288
  • [8] A secure and privacy-preserving lightweight authentication protocol for wireless communications
    Kamil I.
    Olakanmi O.
    Ogundoyin S.O.
    Ogundoyin, Sunday Oyinlola (honsybee@yahoo.com), 2017, Bellwether Publishing, Ltd. (26): : 287 - 304
  • [9] AEP-PPA: An anonymous, efficient and provably-secure privacy-preserving authentication protocol for mobile services in smart cities
    Li, JiLiang
    Zhang, WeiGuo
    Dabra, Vivek
    Choo, Kim-Kwang Raymond
    Kumari, Saru
    Hogrefe, Dieter
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2019, 134 : 52 - 61
  • [10] Secure and Lightweight Authentication Protocol for Privacy Preserving Communications in Smart City Applications
    Gupta, Sunil
    Alharbi, Fares
    Alshahrani, Reem
    Kumar Arya, Pradeep
    Vyas, Sonali
    Elkamchouchi, Dalia H.
    Soufiene, Ben Othman
    SUSTAINABILITY, 2023, 15 (06)