An ECC Based Secure Authentication and Key Exchange Scheme in Multi-server Environment

被引:10
作者
Tomar, Ashish [1 ]
Dhar, Joydip [1 ]
机构
[1] Indian Inst Informat Technol & Management, ABV, Gwalior 474015, Madhya Pradesh, India
关键词
Multi-server architecture; Authentication protocol; Multiple control servers; Smart card; Elliptic curve cryptography; Biometrics; BAN logic; BIOMETRICS;
D O I
10.1007/s11277-019-06280-7
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
For providing strong mutual authentication in a multi-server environment many algorithms have been proposed. Most of the algorithms provide mutual authentication between client and multiple servers by using single control server for registration. In this paper, we consider a scenario, in which client and server belong to the different control server. We have proposed a protocol for providing authentication in the multi-control server environment. In our scheme, for strong authentication, we use user's biometric and registered password value in the authentication process. We also use the concept of elliptic curve cryptography to provide security features in our scheme. Furthermore, Burrows-Abadi-Needham logic has been used for formal security analysis in our work. With informal security analysis, we prove that our scheme is secure against popular security attacks likedenial of service attack, man-in-the-middle attack, replay attack and stolen smart card attack.
引用
收藏
页码:351 / 372
页数:22
相关论文
共 25 条
[1]  
Amin Ruhul, 2016, International Journal of Network Security, V18, P172
[2]   An Improved Biometric-based Multi-server Authentication Scheme Using Smart Card [J].
Baruah, Khanjan Ch. ;
Banerjee, Subhasish ;
Dutta, Manash P. ;
Bhunia, Chandan T. .
INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2015, 9 (01) :397-408
[3]   A tradeoff between the losses caused by computer viruses and the risk of the manpower shortage [J].
Bi, Jichao ;
Yang, Lu-Xing ;
Yang, Xiaofan ;
Wu, Yingbo ;
Tang, Yuan Yan .
PLOS ONE, 2018, 13 (01)
[4]  
BURROWS M, 1990, ACM T COMPUT SYST, V8, P18, DOI [10.1145/77648.77649, 10.1145/74851.74852]
[5]   Cryptanalysis and Extended Three-Factor Remote User Authentication Scheme in Multi-Server Environment [J].
Chandrakar, Preeti ;
Om, Hari .
ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2017, 42 (02) :765-786
[6]   An anonymous multi-server authenticated key agreement scheme based on trust computing using smart cards and biometrics [J].
Chuang, Ming-Chin ;
Chen, Meng Chang .
EXPERT SYSTEMS WITH APPLICATIONS, 2014, 41 (04) :1411-1418
[7]   Robust remote authentication scheme with smart cards [J].
Fan, CI ;
Chan, YC ;
Zhang, ZK .
COMPUTERS & SECURITY, 2005, 24 (08) :619-628
[8]  
Feng Q, 2017, FUTURE GENER COMP SY, V84, P239
[9]   Hash Based Multi-server Key Exchange Protocol Using Smart Card [J].
Gupta, Prakash Chand ;
Dhar, Joydip .
WIRELESS PERSONAL COMMUNICATIONS, 2016, 87 (01) :225-244
[10]   Robust Biometrics-Based Authentication Scheme for Multiserver Environment [J].
He, Debiao ;
Wang, Ding .
IEEE SYSTEMS JOURNAL, 2015, 9 (03) :816-823