An anonymous and robust multi-server authentication protocol using multiple registration servers

被引:11
作者
Amin, Ruhul [1 ]
Islam, S. K. Hafizul [2 ]
Obaidat, Mohammad S. [3 ]
Biswas, G. P. [4 ]
Hsiao, Kuei-Fang [5 ]
机构
[1] Dr Shyama Prasad Mukherjee Int Inst Informat Tech, Dept Comp Sci & Engn, Naya Raipur, India
[2] Indian Inst Informat Technol Kalyani, Dept Comp Sci & Engn, Kalyani 741235, W Bengal, India
[3] Univ Jordan, King Abdullah Sch Informat Technol KASIT 2, Amman, Jordan
[4] Indian Inst Technol ISM Dhanbad, Dept Comp Sci & Engn, Dhanbad 826004, Jharkhand, India
[5] Ming Chuan Univ, Dept Informat Management, Taoyuan Cty 333, Taiwan
关键词
AVISPA; BAN logic; multi-server; password; smartcard; KEY AGREEMENT SCHEME; SMART-CARD; USER ANONYMITY; EFFICIENT; SECURITY; IDENTITY; DESIGN;
D O I
10.1002/dac.3457
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
The concept of multi-server authentication includes multiple numbers of application servers. The registration/control server is the central point in such environment to provide smooth services to a limited number of legitimate users. However, this type of environment is inappropriate to handle unlimited users since the number of users may grow, and thus, the response time may be very high. To eliminate these shortcomings, we have modified the existing multi-server authentication architecture and then designed a new scheme by including multiregistration server technique that can provide a smooth environment to support unlimited number of users. The main aspect of our design is to provide a secure authentication environment for multi-server application using password and smartcard so that the participants can securely communicate with each other. The simulation results are obtained by executing our protocol using AVISPA tool. The results provide concrete evidence about the security safety against active and passive attacks. Furthermore, the justification of correctness of the freshness of the session key negotiation and the mutual authentication between the participants has done been evaluated with the BAN logic model. The comprehensive comparative analysis justifies our argument that our protocol has better applicability in multi-server environments compared to other protocols with similar nature.
引用
收藏
页数:14
相关论文
共 40 条
[1]   A secure light weight scheme for user authentication and key agreement in multi-gateway based wireless sensor networks [J].
Amin, Ruhul ;
Biswas, G. P. .
AD HOC NETWORKS, 2016, 36 :58-80
[2]   Cryptanalysis and Enhancement of Anonymity Preserving Remote User Mutual Authentication and Session Key Agreement Scheme for E-Health Care Systems [J].
Amin, Ruhul ;
Islam, S. K. Hafizul ;
Biswas, G. P. ;
Khan, Muhammad Khurram ;
Li, Xiong .
JOURNAL OF MEDICAL SYSTEMS, 2015, 39 (11)
[3]   Cryptanalysis and Design of a Three-Party Authenticated Key Exchange Protocol Using Smart Card [J].
Amin, Ruhul ;
Biswas, G. P. .
ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2015, 40 (11) :3135-3149
[4]  
[Anonymous], P INT C COMP DES APP
[5]  
[Anonymous], SECUR COMMUN NETW
[6]  
[Anonymous], MULTIMED TOOLS APPL
[7]  
[Anonymous], 2007, SECURITY E SYSTEMS C
[8]  
[Anonymous], 1666, LECT NOTES COMPUTER
[9]  
[Anonymous], 2005, P 2005 NAT COMP S
[10]  
[Anonymous], COMPUT STAND INTERFA