Improved Privacy-Preserving Authentication Scheme for Roaming Service in Mobile Networks

被引:0
作者
Wang, Ding [1 ,2 ]
Wang, Ping [1 ,2 ]
Liu, Jing [1 ]
机构
[1] Peking Univ, Sch Elect Engn & Comp Sci, Beijing 100871, Peoples R China
[2] Peking Univ, Natl Engn Res Ctr Software Engn, Beijing 100871, Peoples R China
来源
2014 IEEE WIRELESS COMMUNICATIONS AND NETWORKING CONFERENCE (WCNC) | 2014年
关键词
Mobile networks; Roaming service; Password authentication; Smart card; User anonymity; SMART CARDS; MUTUAL AUTHENTICATION; ANONYMITY; SECURE; PROTOCOL;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
User authentication is an important security mechanism that allows mobile users to be granted access to roaming service offered by the foreign agent with assistance of the home agent in mobile networks. While security-related issues have been well studied, how to preserve user privacy in this type of protocols still remains an open problem. In this paper, we revisit the privacy-preserving two-factor authentication scheme presented by Li et al. at WCNC 2013. We show that, despite being armed with a formal security proof, this scheme actually cannot achieve the claimed feature of user anonymity and is insecure against offline password guessing attacks, and thus, it is not recommended for practical applications. Then, we figure out how to fix these identified drawbacks, and suggest an enhanced scheme with better security and reasonable efficiency. Further, we conjecture that under the non-tamper-resistant assumption of the smart cards, only symmetric-key techniques are intrinsically insufficient to attain user anonymity.
引用
收藏
页码:3136 / 3141
页数:6
相关论文
共 26 条
[1]  
[Anonymous], PUBL KEY CRYPT STAND
[2]  
[Anonymous], 2010, 2010 Proceedings IEEE INFOCOM
[3]  
[Anonymous], 2012, 1804 NIST FIPS PUB
[4]  
[Anonymous], INT J COMMUN SYST
[5]  
Bellare M, 2000, LECT NOTES COMPUT SC, V1807, P139
[6]  
Bonneau J, 2010, LECT NOTES COMPUT SC, V6052, P98, DOI 10.1007/978-3-642-14577-3_10
[7]  
Bresson Emmanuel., 2003, ACM C COMPUTER COMMU, P241, DOI DOI 10.1145/948109.948142
[8]   Enhanced authentication scheme with anonymity for roaming service in global mobility networks [J].
Chang, Chin-Chen ;
Lee, Chia-Yin ;
Chi, Yen-Chang .
COMPUTER COMMUNICATIONS, 2009, 32 (04) :611-618
[9]   A strong user authentication scheme with smart cards for wireless communications [J].
He, Daojing ;
Ma, Maode ;
Zhang, Yan ;
Chen, Chun ;
Bu, Jiajun .
COMPUTER COMMUNICATIONS, 2011, 34 (03) :367-374
[10]   Anonymous Authentication Scheme without Verification Table for Wireless Environments [J].
Isawa, Ryoichi ;
Morii, Masakatu .
IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 2012, E95A (12) :2488-2492