A biometric-based authenticated key agreement scheme for session initiation protocol in ip-based multimedia networks

被引:0
作者
Ngoc-Tu Nguyen
Chin-Chen Chang
机构
[1] Feng Chia University,Department of Information Engineering and Computer Science
[2] Tay Nguyen University,Faculty of Natural Science and Technology
来源
Multimedia Tools and Applications | 2018年 / 77卷
关键词
Session Initial Protocol (SIP); Authenticated key agreement; Client-server; Client-client; Group communication; Biometric; PalmHash code; Smart card;
D O I
暂无
中图分类号
学科分类号
摘要
Session Initial Protocol (SIP) has been widely adopted for signaling and controlling interactive sessions in multimedia communication networks. Despite its various advantages compared to predecessor protocols, the security and privacy of the SIP remain challenges due to the risk of real-world public networks. While most SIP applications utilize end-to-end communications, existing studies mainly focus on client-server protocols. In this study, we propose a novel SIP authenticated key agreement protocol for all user-server, user-user, and group communications. An end user employs a short-term token to communicate with either end-users or multimedia servers without connecting to a trusted server. Our security analyzes show that the scheme not only resists all known attacks, but provides the system with many desirable features, including direct end-to-end communications, preserving biometric template privacy, user access control, smart card revocation, and long-term secret updates. The latency of the authenticated key agreement phase is relatively small, and thus this signaling protocol is appropriate for a wide range of real-time applications.
引用
收藏
页码:23909 / 23947
页数:38
相关论文
共 131 条
[1]  
Arshad H(2014)Three-factor anonymous authentication and key agreement scheme for telecare medicine information systems J Med Syst 38 136-3180
[2]  
Nikooghadam M(2015)Security analysis and improvement of two authentication and key agreement schemes for session initiation protocol J Supercomput 71 3163-197
[3]  
Arshad H(2016)An efficient and secure authentication and key agreement scheme for session initiation protocol using ecc Multimed Tools Appl 75 181-147
[4]  
Nikooghadam M(2016)Recommendation for key management part 1: General (revision 4) NIST Spec Publ 800 1-1162
[5]  
Arshad H(2007)Security challenge and defense in VoIP infrastructures IEEE Trans Syst Man Cybern Part C (Appl Rev) 37 1152-17
[6]  
Nikooghadam M(2013)An improved and effective secure password-based authentication and key agreement scheme using smart cards for the telecare medicine information system J Med Syst 37 1-208
[7]  
Barker E(1983)On the security of public key protocols IEEE Trans Inf Theory 29 198-91
[8]  
Butcher D(2016)Security analysis and enhancements of an improved authentication for session initiation protocol with provable security Peer-to-Peer Netw Appl 9 82-4504
[9]  
Li X(2016)Cryptanalysis and improvement of a robust smart card secured authentication scheme on SIP using elliptic curve cryptography Multimed Tools Appl 75 4485-81
[10]  
Guo J(2006)Survey of security vulnerabilities in session initiation protocol IEEE Commun Surv Tutorials 8 68-1218