A Cloud Authentication Protocol using One-Time Pad

被引:0
|
作者
Sim, Lexus Jun Hong [1 ]
Ren, Shu Qin [2 ]
Keoh, Sye Loong [1 ]
Aung, Khin Mi Mi [2 ]
机构
[1] Univ Glasgow, Sch Comp Sci, Glasgow G12 8QQ, Lanark, Scotland
[2] ASTAR, Data Storage Inst, Data Ctr Technol Div, Singapore 138932, Singapore
关键词
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
There is a significant increase in the amount of data breaches in corporate servers in the cloud environments. This includes username and password compromise in the cloud and account hijacking, thus leading to severe vulnerabilities of the cloud service provisioning. Traditional authentication schemes rely on the users to use their credentials to gain access to cloud service. However once the credential is compromised, the attacker will gain access to the cloud service easily. This paper proposes a novel scheme that does not require the user to present his credentials, and yet is able to prove ownership of access to the cloud service using a variant of zero-knowledge proof. A challenge-response protocol is devised to authenticate the user, requiring the user to compute a one-time pad (OTP) to authenticate himself to the server without revealing password to the server. A prototype has been implemented to facilitate the authentication of the user when accessing Dropbox, and the experiment results showed that the overhead incurred is insignificant.
引用
收藏
页码:2513 / 2516
页数:4
相关论文
共 50 条
  • [41] Authentication Protocols Based on One-Time Passwords
    Babkin, Sergey
    Epishkina, Anna
    PROCEEDINGS OF THE 2019 IEEE CONFERENCE OF RUSSIAN YOUNG RESEARCHERS IN ELECTRICAL AND ELECTRONIC ENGINEERING (EICONRUS), 2019, : 1794 - 1798
  • [42] Masquerade on one-time password authentication scheme
    Lin, Chun-Li
    Hung, Ching-Po
    PROCEEDINGS OF FUTURE GENERATION COMMUNICATION AND NETWORKING, MAIN CONFERENCE PAPERS, VOL 1, 2007, : 278 - 282
  • [43] An Improved One-time Password Authentication Scheme
    Liu, Huiyi
    Zhang, Yuegong
    2013 15TH IEEE INTERNATIONAL CONFERENCE ON COMMUNICATION TECHNOLOGY (ICCT), 2013, : 1 - 5
  • [44] Lightweight One-Time Signature for Multicast Authentication
    Deng, Pan
    Yang, Liuqing
    2012 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM 2012), 2012,
  • [45] Cryptanalysis of Controlled Quantum Secure Direct Communication and Authentication Protocol Based on Five-Particle Cluster State and Quantum One-Time Pad
    Zhihao Liu
    Hanwu Chen
    Wenjie Liu
    International Journal of Theoretical Physics, 2016, 55 : 4564 - 4576
  • [46] Ubiquitous One-Time Password Service Using the Generic Authentication Architecture
    Chen, Chunhua
    Mitchell, Chris J.
    Tang, Shaohua
    MOBILE NETWORKS & APPLICATIONS, 2013, 18 (05): : 738 - 747
  • [47] Improvement of one-time password authentication scheme using smart cards
    Lee, NY
    Chen, JC
    IEICE TRANSACTIONS ON COMMUNICATIONS, 2005, E88B (09) : 3765 - 3767
  • [48] Proposal for Optical One-time Password Authentication Using Digital Holography
    Jeon, Seok Hee
    Gil, Sang Keun
    JOURNAL OF THE OPTICAL SOCIETY OF KOREA, 2016, 20 (06) : 722 - 732
  • [49] Using one-time password based authentication for Wireless IP Network
    Vaidya, Binod
    Lee, SangDuck
    Kim, Eung-Kon
    Han, SeungJo
    INTELLIGENCE AND SECURITY INFORMATICS, PROCEEDINGS, 2006, 3975 : 739 - 740
  • [50] A Visual One-Time Password Authentication Scheme Using Mobile Devices
    Chow, Yang-Wai
    Susilo, Willy
    Au, Man Ho
    Barmawi, Ari Moesriami
    INFORMATION AND COMMUNICATIONS SECURITY, ICICS 2014, 2015, 8958 : 243 - 257