Combined Web/mobile authentication for secure Web access control

被引:5
|
作者
Al-Qayedi, A
Adi, W
Zahro, A
Mabrouk, A
机构
来源
2004 IEEE WIRELESS COMMUNICATIONS AND NETWORKING CONFERENCE, VOLS 1-4: BROADBAND WIRELESS - THE TIME IS NOW | 2004年
关键词
component; authentication; access control; mobile security; J2ME;
D O I
10.1109/WCNC.2004.1311267
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Previous Web access authentication systems have used either the Web or the Mobile channel individually to confirm the claimed identity of the remote user. Both approaches proved to be insecure when used in isolation. An investigation is presented into the enhanced security of a new combined Web/Mobile authentication system. The hybrid system enables strong authentication by augmenting the traditional Web-based username/password approach with a Mobile-based challenge/response authentication. Experiments show that the combined system is relatively immune to eavesdropping attacks and provides a trade-off between security and usability of the remote authentication system. The system is promising for current as well as for future 3G mobile and pervasive computing environments [1].
引用
收藏
页码:677 / 681
页数:5
相关论文
共 50 条
  • [1] Secure communication and access control for web services container
    Peng, Yu
    Wu, Quanyuan
    GCC 2005: FIFTH INTERNATIONAL CONFERENCE ON GRID AND COOPERATIVE COMPUTING, PROCEEDINGS, 2006, : 412 - +
  • [2] PERSONALIZED AUTHENTICATION PROCEDURE FOR RESTRICTED WEB SERVICE ACCESS IN MOBILE PHONES
    Ramya, T.
    Malathi, S.
    Pratheeksha, G. R.
    Kumar, V. D. Ambeth
    2014 FIFTH INTERNATIONAL CONFERENCE ON THE APPLICATIONS OF DIGITAL INFORMATION AND WEB TECHNOLOGIES (ICADIWT), 2014, : 69 - 74
  • [3] Secure Web server based on resource access control mechanism
    Wang, Tao
    Qing, Sihan
    Liu, Haifeng
    Jisuanji Gongcheng/Computer Engineering, 2003, 29 (15):
  • [4] Authorization and access control to secure web services in a grid infrastructure
    Pastore, Serena
    WEBIST 2006: Proceedings of the Second International Conference on Web Information Systems and Technologies: INTERNET TECHNOLOGY / WEB INTERFACE AND APPLICATIONS, 2006, : 264 - 267
  • [5] Smart access: strong authentication on the Web
    Verschuren, T
    COMPUTER NETWORKS AND ISDN SYSTEMS, 1998, 30 (16-18): : 1511 - 1519
  • [6] Mobile access to Web resources
    Joshi, A
    Krishna, A
    IEEE PERSONAL COMMUNICATIONS, 1998, 5 (05): : 6 - 7
  • [7] Mobile Web access using eNetwork Web express
    Floyd, R
    Housel, B
    Tait, C
    IEEE PERSONAL COMMUNICATIONS, 1998, 5 (05): : 47 - 52
  • [8] Secure access to personalized web services
    Barone, GB
    Margarita, N
    Mazzeo, A
    Mazzocca, N
    Romano, L
    2001 PACIFIC RIM INTERNATIONAL SYMPOSIUM ON DEPENDABLE COMPUTING, PROCEEDINGS, 2001, : 266 - 269
  • [9] Secure Mechanism for Mobile Web Browsing
    Chen, Chia-Mei
    Ou, Ya-Hui
    2011 IEEE 17TH INTERNATIONAL CONFERENCE ON PARALLEL AND DISTRIBUTED SYSTEMS (ICPADS), 2011, : 924 - 928
  • [10] Secure Web Framework For Mobile Devices
    Malik, Muneer
    Agrawal, Dharma P.
    2012 IEEE GLOBECOM WORKSHOPS (GC WKSHPS), 2012, : 781 - 786