A Secure Remote Authentication Scheme Preserving User Anonymity with Non-Tamper Resistant Smart Cards | |
---|---|
學年 | 98 |
學期 | 2 |
出版(發表)日期 | 2010-05-01 |
作品名稱 | A Secure Remote Authentication Scheme Preserving User Anonymity with Non-Tamper Resistant Smart Cards |
作品名稱(其他語言) | |
著者 | Horng, Wen-Bing; Lee, Cheng-Ping; Peng, Jian-Wen |
單位 | 淡江大學資訊工程學系 |
出版者 | Zographou: World Scientific and Engineering Academy and Society (W S E A S) |
著錄名稱、卷期、頁數 | WSEAS Transactions on Information Science and Applications 7(5), pp.619-628 |
摘要 | Anonymity is one of the important properties of remote authentication schemes to preserve user privacy. Besides, it can avoid unauthorized entities from using the user ID and other intercepted information to forge legal login messages. In 2004, Das et al. first proposed a remote user authentication scheme with smart cards using dynamic ID to protect user anonymity. Later, in 2005, Chien and Chen demonstrated that Das et al.'s scheme fails to preserve user anonymity and then presented a new scheme to remedy this problem. In 2007, Hu et al. pointed out that Chien-Chen's scheme cannot preserve user anonymity if the smart card is nontamper resistant; i.e., the secret information stored in the smart card can be revealed. They then proposed an improved scheme to cope with this problem. In this paper, however, we will show that Hu et al.'s scheme still cannot preserve user anonymity under their assumption. In addition, their scheme is also vulnerable to the offline password guessing attack. We then present an improvement to overcome these weaknesses, while preserving all the merits of their scheme. |
關鍵字 | Anonymity; Non-tamper resistant; Cryptanalysis; Remote authentication; Smart card |
語言 | en |
ISSN | 1790-0832 |
期刊性質 | 國外 |
收錄於 | EI |
產學合作 | |
通訊作者 | Horng, Wen-Bing; Lee, Cheng-Ping; Peng, Jian-Wen |
審稿制度 | 是 |
國別 | GRC |
公開徵稿 | |
出版型式 | 紙本 |
相關連結 |
機構典藏連結 ( http://tkuir.lib.tku.edu.tw:8080/dspace/handle/987654321/59846 ) |