A password less authentication protocol for multi-server environment using physical unclonable function

被引:5
|
作者
Praveen Kumar, E. [1 ]
Priyanka, S. [1 ]
机构
[1] VIT AP Univ, Sch Elect Engn, AP Campus, Amaravathi 522237, India
来源
JOURNAL OF SUPERCOMPUTING | 2023年 / 79卷 / 18期
关键词
Physical unclonable function; Authenticated key agreement; Mutual authentication; Server registration; Multi-server environment; Cryptanalysis; Password less security; Biometric key; KEY AGREEMENT PROTOCOL; MUTUAL AUTHENTICATION; USER AUTHENTICATION; PROVABLY SECURE; SCHEME; INTERNET; PUF; BIOMETRICS; STORAGE;
D O I
10.1007/s11227-023-05437-3
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Password-based authentication is the most commonly used method to authenticate users to get online services. In password-based authentication, the users must remember all their complex passwords and also need to update them constantly. Since users do not utilize high-entropy passwords, password-based authentication mechanisms are susceptible to offline password-guessing attacks. Passwordless authentication protocol has therefore been developed by researchers. In this work, we propose a secure authentication mechanism that combines a password-protected biometric with physically unclonable functions (PUF). PUF authentication is a cryptographic technology used to provide secure authentication. PUF authentication works by using the physical characteristics of a device to generate a unique cryptographic key. This key is then used to authenticate the device and grant access to protected resources. PUF authentication can be used to protect data, networks, and communication systems from unauthorized access. The technology is also used to protect against replay attacks, man-in-the-middle attacks, and other forms of malicious activity. PUF authentication is cost-effective and provides a high level of security. Our suggested methodology gets over issues with existing systems including Key Compromise Impersonation Attacks, Wrong Login, and Server Registration Complexity. The proposed protocol is validated using"Automated Validation of Internet Security Protocols and Applications (AVISPA)" and Scyther tool and its security is explicitly demonstrated by"BAN Logic". Furthermore, by contrasting several parameter metrics with those of the existing systems, the efficiency of our technique is highlighted.
引用
收藏
页码:21474 / 21506
页数:33
相关论文
共 50 条
  • [1] A password less authentication protocol for multi-server environment using physical unclonable function
    E. Praveen Kumar
    S. Priyanka
    The Journal of Supercomputing, 2023, 79 : 21474 - 21506
  • [2] An Enhanced Authentication Protocol for Multi-server Environment Using Password and Smart Card
    Sudhakar, T.
    Natarajan, V
    Gopinath, M.
    Saranyadevi, J.
    WIRELESS PERSONAL COMMUNICATIONS, 2020, 115 (04) : 2779 - 2803
  • [3] An Enhanced Authentication Protocol for Multi-server Environment Using Password and Smart Card
    T. Sudhakar
    V. Natarajan
    M. Gopinath
    J. Saranyadevi
    Wireless Personal Communications, 2020, 115 : 2779 - 2803
  • [4] A Threshold Multi-Server Protocol for Password-Based Authentication
    Guan, Mengxiang
    Song, Jiaxing
    Liu, Weidong
    2016 IEEE 3RD INTERNATIONAL CONFERENCE ON CYBER SECURITY AND CLOUD COMPUTING (CSCLOUD), 2016, : 108 - 118
  • [5] SSO password-based multi-server authentication protocol
    Sood, Sandeep K.
    Sarje, Anil K.
    Singh, Kuldip
    INTERNATIONAL JOURNAL OF COMMUNICATION NETWORKS AND DISTRIBUTED SYSTEMS, 2012, 9 (1-2) : 161 - 180
  • [6] A Novel Multi-server Environment Authentication Protocol
    Li Haixia
    Lu Chuiwei
    Sun Sheng
    PROCESSING OF 2014 INTERNATIONAL CONFERENCE ON MULTISENSOR FUSION AND INFORMATION INTEGRATION FOR INTELLIGENT SYSTEMS (MFI), 2014,
  • [7] An enhanced multi-server authentication protocol using password and smart-card: cryptanalysis and design
    Maitra, Tanmoy
    Islam, S. K. Hafizul
    Amin, Ruhul
    Giri, Debasis
    Khan, Muhammad Khurram
    Kumar, Neeraj
    SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (17) : 4615 - 4638
  • [8] Efficient password authentication schemes based on a geometric approach for a multi-server environment
    Horng-Twu Liaw
    Chih-Ta Yen
    Meng-Yu Chiu
    Li-Lin Hsiao
    Journal of Zhejiang University SCIENCE C, 2010, 11 : 989 - 997
  • [9] Efficient password authentication schemes based on a geometric approach for a multi-server environment
    HorngTwu LIAW
    ChihTa YEN
    MengYu CHIU
    LiLin HSIAO
    JournalofZhejiangUniversity-ScienceC(Computers&Electronics), 2010, 11 (12) : 989 - 997
  • [10] Efficient password authentication schemes based on a geometric approach for a multi-server environment
    Liaw, Horng-Twu
    Yen, Chih-Ta
    Chiu, Meng-Yu
    Hsiao, Li-Lin
    JOURNAL OF ZHEJIANG UNIVERSITY-SCIENCE C-COMPUTERS & ELECTRONICS, 2010, 11 (12): : 989 - 997