一种基于消息认证码的身份认证算法
作者:
基金项目:

湛江师范学院博士专项研究项目(ZW0707)


User Authentication Scheme Based on Message Authentication Code
  • 摘要
  • | |
  • 访问统计
  • |
  • 参考文献 [6]
  • |
  • 相似文献 [20]
  • | | |
  • 文章评论
    摘要:

    针对电子商务中广泛使用的密码身份认证法存在的易泄漏、重放攻击、负担过重等问题,提出一种基于消息认证码的身份认证算法,来解决上述问题。本算法具有失效次数和失效时间两个特性,不需要任何口令和验证表,因此具有稳定的安全性。此外本算法客户端计算量很小,可以用于手机等计算能力有限的环境。

    Abstract:

    For easy leak, replay attacks, the burden of overweight and other issues in password-based user authentication schemes for electronic commerce, this paper proposes a user authentication scheme based on message authentication code to solve these problems. This algorithm has countable and time-bound features, does not require any password or verification table, it is under firm security. This algorithm has a lower computational overhead on client, can be used in mobile environment with limited computing capability.

    参考文献
    1 Ku WC, Chen SM. Weaknesses and improvements of an efficient passwordbased user authentication scheme using smart cards. IEEE Trans. Consumer Electronic
    2 Nam J, Lee Y, Kim S, Merkle DWC. Security weakness in a three-party pairing-based protocol for password authenticated key exchange. Information Sciences, 2007,177 (6):1364-1375.
    3 Furkan Tari, Ant Ozok A, Stephen H. Holden, A comparison of perceived and real shoulder-surfing risks between alphanumeric and graphical passwords. Proceedings of the second symposium on Usable Privacy and Security, 2006. 56-66 .
    4 Lu EJL, Huang CJ. A time-stamping proxy signature scheme using time-stamping service. International Journal of Network Security, 2006, 2 (1):43-51.
    5 Hwang MS, Li LH. A new remote user authentication scheme using smart cards. IEEE Transactions on Consumer Electronics, 2000,46 (1):28-30.
    6 Yasinsac A, Childs J, Formal analysis of modern security protocols. Information Sciences, 2005,171 (1– 3):189-211.
    引证文献
    网友评论
    网友评论
    分享到微博
    发 布
引用本文

王松波.一种基于消息认证码的身份认证算法.计算机系统应用,2010,19(12):123-125

复制
分享
文章指标
  • 点击次数:2206
  • 下载次数: 3274
  • HTML阅读次数: 0
  • 引用次数: 0
历史
  • 收稿日期:2010-04-16
  • 最后修改日期:2010-05-24
文章二维码
您是第11232776位访问者
版权所有:中国科学院软件研究所 京ICP备05046678号-3
地址:北京海淀区中关村南四街4号 中科院软件园区 7号楼305房间,邮政编码:100190
电话:010-62661041 传真: Email:csa (a) iscas.ac.cn
技术支持:北京勤云科技发展有限公司

京公网安备 11040202500063号