Smart card-based secure authentication protocol in multi-server IoT environment

被引:34
作者
Bae, Won-il [1 ,2 ]
Kwak, Jin [2 ,3 ]
机构
[1] Ajou Univ, Dept Comp Engn, Suwon, South Korea
[2] Ajou Univ, Ind Univ Cooperat, 260 Worldcup Ro, Suwon 16499, Gyunggi Do, South Korea
[3] Ajou Univ, Dept Cyber Secur, Suwon, South Korea
基金
新加坡国家研究基金会;
关键词
User authentication; Multi server; Internet of things; Formal verification; Security; EFFICIENT;
D O I
10.1007/s11042-017-5548-2
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In recent years, the internet of things has been widely utilized in various fields, such as in smart factories or connected cars. As its domain of application has expanded, it has begun to be employed using multi-server architectures for a more efficient use of resources. However, because users wishing to receive IoT(Internet of Things) services connect to multi-servers over wireless networks, this can expose systems to various attacks and result in serious security risks. To protect systems (and users) from potential security vulnerabilities, a secure authentication technology is necessary. In this paper, we propose a smart card-based authentication protocol, which performs the authentication for each entity by allowing users to go through the authentication process using a smart card transmitted from an authentication server, and to login to a server connected to the IoT. Furthermore, the security of our proposed authentication protocol is verified by simulating a formal verification scenario using AVISPA(Automated Validation of Internet Security Protocols and Applications), a security protocol-verification tool.
引用
收藏
页码:15793 / 15811
页数:19
相关论文
共 15 条
[1]  
Abdellatif Riham., 2011, Int. J. Netw. Secur, V12, P13, DOI DOI 10.1016/J.EJRS.2011.11.003.
[2]  
Armando A, 2005, LECT NOTES COMPUT SC, V3576, P281
[3]  
Chang CC, 2013, J INF SCI ENG, V29, P1135
[4]  
El-Emam Eman., 2011, International Journal of Network Security, V12, P159
[5]  
He D., 2011, INT J NETWORK SECURI, V13, P58
[6]   DoS-resistant ID-based password authentication scheme using smart cards [J].
Hwang, Min-Shiang ;
Chong, Song-Kong ;
Chen, Te-Yu .
JOURNAL OF SYSTEMS AND SOFTWARE, 2010, 83 (01) :163-172
[7]   An efficient and security dynamic identity based authentication protocol for multi-server architecture using smart cards [J].
Li, Xiong ;
Xiong, Yongping ;
Ma, Jian ;
Wang, Wendong .
JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2012, 35 (02) :763-769
[8]   An enhanced multi-server authentication protocol using password and smart-card: cryptanalysis and design [J].
Maitra, Tanmoy ;
Islam, S. K. Hafizul ;
Amin, Ruhul ;
Giri, Debasis ;
Khan, Muhammad Khurram ;
Kumar, Neeraj .
SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (17) :4615-4638
[9]   Diffie-Hellman based Smart-card Multi-Server Authentication Scheme [J].
Mittal, Himanshu .
2014 6TH INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND COMMUNICATION NETWORKS, 2014, :808-812
[10]   A Secure Biometrics-Based Multi-Server Authentication Protocol Using Smart Cards [J].
Odelu, Vanga ;
Das, Ashok Kumar ;
Goswami, Adrijit .
IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2015, 10 (09) :1953-1966