Three-Factor-Based Confidentiality-Preserving Remote User Authentication Scheme in Multi-server Environment

被引:0
|
作者
Rifaqat Ali
Arup Kumar Pal
机构
[1] Indian Institute of Technology (Indian School of Mines),Department of Computer Science and Engineering
关键词
Authentication; logic; Random oracle model; Security attacks;
D O I
暂无
中图分类号
学科分类号
摘要
Recently, Guo–Wen projected an improved authentication protocol in multi-server environment, proclaiming it to preserve user anonymity. However, the authors revisit Guo–Wen’s protocol and discover various malicious threats, i.e., (1) password guessing threat, (2) identity guessing threat, (3) new smartcard issue threat, (4) user impersonation threat, (5) known session-key temporary information threat and (6) privilege insider threat. In order to surmount theses above-mentioned threats, we propose an enhanced and robust three-factor-based confidentiality-preserving authentication protocol in multi-server environment. The BAN (Burrows, Abadi, Needham) logic is used for validating our scheme which ensures the mutual authentication and session-key negotiation are securely generated. Thereafter, applied random oracle model demonstrates the backbone parameters (like identity, password, biometric and session key) of our protocol are highly secured. Further, the discussion of informal security analysis reveals that the scheme withstands several types of malicious attacks. Besides, we simulate our scheme with the help of AVISPA (Automated Validation of Internet Security Protocol and Applications) tool which demonstrates that it resists to various active and passive attacks. In addition, the performance evaluation exhibits the efficiency in regard to communication and computation costs and estimated time of our scheme is comparatively less with other related existing works.
引用
收藏
页码:3655 / 3672
页数:17
相关论文
共 50 条
  • [41] Security enhanced dynamic ID based remote user authentication scheme for multi-server environments
    IT Convergence Research Institute, Sungkyunkwan University, Korea, Republic of
    不详
    Int. J. u e Serv. Sci. Technol., 7 (127-136):
  • [42] Authentication scheme based on smart card in multi-server environment
    Simin Zhou
    Qingqing Gan
    Xiaoming Wang
    Wireless Networks, 2020, 26 : 855 - 863
  • [43] Comments on a Dynamic-ID-based Remote User Authentication Scheme for Multi-server Environment Using Smart Cards
    Chang, Ya-Fen
    Chang, Pei-Yu
    2012 SIXTH INTERNATIONAL CONFERENCE ON GENETIC AND EVOLUTIONARY COMPUTING (ICGEC), 2012, : 59 - 62
  • [44] An enhanced smart card and dynamic ID based remote multi-server user authentication scheme
    Nitish Andola
    Sourabh Prakash
    Raghav Gahlot
    S. Venkatesan
    Shekhar Verma
    Cluster Computing, 2022, 25 : 3699 - 3717
  • [45] Cryptanalysis of Efficient Dynamic ID Based Remote User Authentication Scheme in Multi-server Environment Using Smart Card
    Pan, Hsieh-Tsen
    Tsaur, Shyh-Chang
    Hwang, Min-Shiang
    PROCEEDINGS OF 2016 12TH INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND SECURITY (CIS), 2016, : 590 - 593
  • [46] A Multi-server Environment with Secure and Efficient Remote User Authentication Scheme Based on Dynamic ID Using Smart Cards
    Srinivas Jangirala
    Sourav Mukhopadhyay
    Ashok Kumar Das
    Wireless Personal Communications, 2017, 95 : 2735 - 2767
  • [47] Authentication scheme based on smart card in multi-server environment
    Zhou, Simin
    Gan, Qingqing
    Wang, Xiaoming
    WIRELESS NETWORKS, 2020, 26 (02) : 855 - 863
  • [48] An enhanced smart card and dynamic ID based remote multi-server user authentication scheme
    Andola, Nitish
    Prakash, Sourabh
    Gahlot, Raghav
    Venkatesan, S.
    Verma, Shekhar
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2022, 25 (05): : 3699 - 3717
  • [49] A Multi-server Environment with Secure and Efficient Remote User Authentication Scheme Based on Dynamic ID Using Smart Cards
    Jangirala, Srinivas
    Mukhopadhyay, Sourav
    Das, Ashok Kumar
    WIRELESS PERSONAL COMMUNICATIONS, 2017, 95 (03) : 2735 - 2767
  • [50] A Biometric based Remote User Authentication Technique Using Smart Card in Multi-Server Environment
    Shyamalendu Kandar
    Sumit Pal
    Bibhas Chandra Dhara
    Wireless Personal Communications, 2021, 120 : 1003 - 1026