Robust Smart Card Authentication Scheme for Multi-server Architecture

被引:76
作者
Pippal, Ravi Singh [1 ]
Jaidhar, C. D. [3 ]
Tapaswi, Shashikala [2 ]
机构
[1] ABV Indian Inst Informat Technol & Management, Gwalior, India
[2] ABV Indian Inst Informat Technol & Management, Dept Informat Technol, Gwalior, India
[3] Def Inst Adv Technol, Pune, Maharashtra, India
关键词
Authentication; BAN logic; Multi-server; Nonce; Session key; Smart card; REMOTE PASSWORD AUTHENTICATION; EFFICIENT;
D O I
10.1007/s11277-013-1039-6
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
In a traditional single server smart card authentication scheme, one server is responsible for providing services to all the registered remote users. Though if a user wishes to access network services from different servers, he or she has to register with these servers separately. To handle this issue, multi-server authentication scheme has been proposed. However, almost all these schemes available in the literature are exposed to one or the other potential attack. This paper proposes robust multi-server authentication scheme using smart cards. It eliminates the use of verification table and permits the registered remote users to access multiple servers without separate registration. Moreover, users can choose and change the password securely without any assistance from the server or registration center, supports mutual authentication and session key agreement between user and the server. Furthermore, the proposed scheme withstands present potential network attacks. Besides, our scheme is validated by using BAN logic. Comparative analysis of existing schemes with our proposed scheme is also presented in terms of various security features provided and computational complexity.
引用
收藏
页码:729 / 745
页数:17
相关论文
共 26 条
[1]  
[Anonymous], INFORMATICA
[2]  
[Anonymous], 2005, P 2005 NAT COMP S
[3]   Logic of authentication [J].
Burrows, Michael ;
Abadi, Martin ;
Needham, Roger .
Operating Systems Review (ACM), 1989, 23 (05) :1-13
[4]   Breaking a remote user authentication scheme for multi-server architecture [J].
Cao, Xiang ;
Zhong, Sheng .
IEEE COMMUNICATIONS LETTERS, 2006, 10 (08) :580-581
[5]   An efficient and secure multi-server password authentication scheme using smart cards [J].
Chang, CC ;
Lee, JS .
2004 INTERNATIONAL CONFERENCE ON CYBERWORLDS, PROCEEDINGS, 2004, :417-422
[6]   REMOTE PASSWORD AUTHENTICATION WITH SMART CARDS [J].
CHANG, CC ;
WU, TC .
IEE PROCEEDINGS-E COMPUTERS AND DIGITAL TECHNIQUES, 1991, 138 (03) :165-168
[7]  
Chen B. L., 2012, INT J DIGITAL CONTEN, V6, P180
[8]   An efficient and DoS-resistant user authentication scheme for two-tiered wireless sensor networks [J].
Fan, Rong ;
He, Dao-jing ;
Pan, Xue-zeng ;
Ping, Ling-di .
JOURNAL OF ZHEJIANG UNIVERSITY-SCIENCE C-COMPUTERS & ELECTRONICS, 2011, 12 (07) :550-560
[9]   A Time-Bound Ticket-Based Mutual Authentication Scheme for Cloud Computing [J].
Hao, Z. ;
Zhong, S. ;
Yu, N. .
INTERNATIONAL JOURNAL OF COMPUTERS COMMUNICATIONS & CONTROL, 2011, 6 (02) :227-235
[10]  
He D., 2011, COMMENTS SECURE DYNA