Security enhancement for the timestamp-based password authentication scheme using smart cards

被引:67
作者
Shen, JJ
Lin, CW
Hwang, MS
机构
[1] Natl Huwei Inst Technol, Dept Informat Management, Huwei 632, Taiwan
[2] Natl Tsing Hua Univ, Dept Comp Sci, Hsinchu 30043, Taiwan
[3] Natl Chung Hsing Univ, Dept Management Informat Syst, Taichung 402, Taiwan
关键词
authentication; cryptography; password; security; smart card;
D O I
10.1016/S0167-4048(03)00709-0
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In 1999, Yang and Shieh proposed a timestamp-based password authentication scheme with smart cards. However, Chan and Cheng showed that it was insecure because the scheme was vulnerable to the forged login attack. In this paper, we propose a modified Yang-Shieh scheme to enhance security. Our modification can help withstand the forged login attack and also provide a mutual authentication method to prevent the forged server attack.
引用
收藏
页码:591 / 595
页数:5
相关论文
共 10 条
  • [1] Authenticating public terminals
    Asokan, N
    Debar, H
    Steiner, M
    Waidner, M
    [J]. COMPUTER NETWORKS-THE INTERNATIONAL JOURNAL OF COMPUTER AND TELECOMMUNICATIONS NETWORKING, 1999, 31 (08): : 861 - 870
  • [2] Chan CK, 2002, COMPUT SECUR, V21, P74
  • [3] A REMOTE PASSWORD AUTHENTICATION SCHEME BASED UPON ELGAMALS SIGNATURE SCHEME
    CHANG, CC
    LIAO, WY
    [J]. COMPUTERS & SECURITY, 1994, 13 (02) : 137 - 144
  • [4] Cheng-Chi Lee, 2002, Operating Systems Review, V36, P46, DOI 10.1145/567331.567335
  • [5] An enhancement of timestamp-based password authentication scheme
    Fan, L
    Li, JH
    Zhu, HW
    [J]. COMPUTERS & SECURITY, 2002, 21 (07) : 665 - 667
  • [6] A new remote user authentication scheme using smart cards
    Hwang, MS
    Li, LH
    [J]. IEEE TRANSACTIONS ON CONSUMER ELECTRONICS, 2000, 46 (01) : 28 - 30
  • [7] A remote password authentication scheme based on the digital signature method
    Hwang, MS
    [J]. INTERNATIONAL JOURNAL OF COMPUTER MATHEMATICS, 1999, 70 (04) : 657 - 666
  • [8] LIN CW, 2003, ACM OPERATING SYSTEM, V37, P7
  • [9] Schneier Bruce, 1996, APPL CRYPTOGRAPHY
  • [10] Password authentication schemes with smart cards
    Yang, WH
    Shieh, SP
    [J]. COMPUTERS & SECURITY, 1999, 18 (08) : 727 - 733