An anonymous mobile user authentication protocol using self-certified public keys based on multi-server architectures

被引:0
|
作者
Wen-Bin Hsieh
Jenq-Shiou Leu
机构
[1] National Taiwan University of Science and Technology,Department of Electronic Engineering
来源
关键词
User authentication; Pairing-based; Multi-server; Smart card;
D O I
暂无
中图分类号
学科分类号
摘要
As a smart phone becomes a daily necessity, mobile services are springing up. A mobile user should be authenticated and authorized before accessing these mobile services. Generally, mobile user authentication is a method which is used to validate the legitimacy of a mobile login user. As the rapid booming of computer networks, multi-server architecture has been pervasive in many network environments. Much recent research has been focused on proposing password-based remote user authentication protocols using smart cards for multi-server environments. To protect the privacy of users, many dynamic identity based remote user authentication protocols were proposed. In 2009, Hsiang and Shih claimed their protocol is efficient, secure, and suitable for the practical application environment. However, Sood et al. pointed out Hsiang et al.’s protocol is susceptible to replay attack, impersonation attack and stolen smart card attack. Moreover, the password change phase of Hsiang et al.’s protocol is incorrect. Thus, Sood et al. proposed an improved protocol claimed to be practical and computationally efficient. Nevertheless, Li et al. found that Sood et al.’s protocol is still vulnerable to leak-of-verifier attack, stolen smart card attack and impersonation attack and consequently proposed an improvement to remove the aforementioned weaknesses. In 2012, Liao et al. proposed a novel pairing-based remote user authentication protocol for multi-server environment, the scheme based on elliptic curve cryptosystem is more secure and efficient. However, through careful analyses, we find that Liao et al.’s protocol is still susceptible to the trace attack. Besides, Liao et al.’s protocol is inefficient since each service server has to update its ID table periodically. In this paper, we propose an improved protocol to solve these weaknesses. By enhancing the security, the improved protocol is well suited for the practical environment.
引用
收藏
页码:133 / 148
页数:15
相关论文
共 50 条
  • [1] An anonymous mobile user authentication protocol using self-certified public keys based on multi-server architectures
    Hsieh, Wen-Bin
    Leu, Jenq-Shiou
    JOURNAL OF SUPERCOMPUTING, 2014, 70 (01): : 133 - 148
  • [2] Efficient and Anonymous Mobile User Authentication Protocol Using Self-Certified Public Key Cryptography for Multi-Server Architectures
    He, Debiao
    Zeadally, Sherali
    Kumar, Neeraj
    Wu, Wei
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2016, 11 (09) : 2052 - 2064
  • [3] A novel multi-server remote user authentication scheme using self-certified public keys for mobile clients
    Liao, Yi-Pin
    Hsiao, Chih-Ming
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2013, 29 (03): : 886 - 900
  • [4] An efficient dynamic ID-based remote user authentication scheme using self-certified public keys for multi-server environments
    Li, Shudong
    Wu, Xiaobo
    Zhao, Dawei
    Li, Aiping
    Tian, Zhihong
    Yang, Xiaodong
    PLOS ONE, 2018, 13 (10):
  • [5] Lightweight remote user authentication protocol for multi-server 5G networks using self-certified public key cryptography
    Ying, Bidi
    Nayak, Amiya
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2019, 131 : 66 - 74
  • [6] Anonymous and Authentication Protocol for Multi-Server
    Kuo, Wen-Chung
    Shih, Po-Wei
    Huang, Yu-Chih
    Wuu, Lih-Chyau
    INFORMATION TECHNOLOGY AND CONTROL, 2017, 46 (02): : 235 - 245
  • [7] Secure two-factor lightweight authentication protocol using self-certified public key cryptography for multi-server 5G networks
    ul Haq, Inam
    Wang, Jian
    Zhu, Youwen
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2020, 161
  • [8] A secure three factor-based fully anonymous user authentication protocol for multi-server environment
    Mahor, Vinod Kumar
    Padmavathi, R.
    Chatterjee, Santanu
    Dewangan, Sanshray Kumar
    Kumar, Manish
    INTERNATIONAL JOURNAL OF AD HOC AND UBIQUITOUS COMPUTING, 2020, 34 (01) : 45 - 60
  • [9] An anonymous and robust multi-server authentication protocol using multiple registration servers
    Amin, Ruhul
    Islam, S. K. Hafizul
    Obaidat, Mohammad S.
    Biswas, G. P.
    Hsiao, Kuei-Fang
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2017, 30 (18)
  • [10] A Blockchain-Based Public Auditing Protocol with Self-Certified Public Keys for Cloud Data
    Li, Hongtao
    Guo, Feng
    Wang, Lili
    Wang, Jie
    Wang, Bo
    Wu, Chuankun
    SECURITY AND COMMUNICATION NETWORKS, 2021, 2021 (2021)