基于ECDLP的SIP认证密钥协商协议
作者:
基金项目:

国家自然科学基金(21373132);陕西省教育厅资助项目(15JK1139);陕西理工学院科研计划(SLGKY14-09)


SIP Authentication Key Agreement Protocol Based on ECDLP
Author:
  • 摘要
  • | |
  • 访问统计
  • |
  • 参考文献 [12]
  • |
  • 相似文献 [20]
  • | | |
  • 文章评论
    摘要:

    SIP协议是应用层控制协议,为了提高SIP协议的安全性,文中基于椭圆曲线离散对数问题的难解性,结合用户身份、用户口令及单向陷门函数F(),提出了一种基于ECDLP的SIP认证密钥协商协议.协议过程主要由初始化、注册、登录认证、口令修改四部分组成.安全分析表明,该协议实现了双向认证、提供了安全会话密钥,能抵抗口令猜测攻击、中间人攻击、重放攻击、冒充攻击、Denning-Sacco攻击等.与相关协议比较,本文所提出的基于ECDLP的SIP认证密钥协议具有更高的安全性,能更好的满足应用需求.

    Abstract:

    The SIP protocol is a controlling protocol of the application layer. In order to improve the security of SIP protocol, based on the intractability of the elliptic curve discrete logarithm problem, combining with the user's identity, password and one-way trapdoor function F(), this paper proposes an SIP authentication key agreement protocol with the basis of ECDLP. The agreement process consists of four parts:initialization, registration, login authentication, and changing password. The safety analysis shows that the proposed protocol not only provides two-way authentication and a safe session key, but also resists the password-guessing attack, man-in-the-middle attack, replay attack, masquerade attack, and Denning-Sacco attack. Compared with other protocols, the proposed SIP authentication key agreement based on ECDLP has higher security and can better meet the application demands.

    参考文献
    1 Rosenberg J, Schulzrinne H, Camarillo G. SIP:Session initiation protocol. RFC 3261, 2002.
    2 Geneiatakis D, Dagiuklas T, Kambourakis G, et al. Survey of security vulnerabilities in session initiation protocol. IEEE Communication Surveys and Tutorials, 2006, 8(3):68-81.
    3 Lee CC. On security of an efficient nonce based authentication scheme for SIP. Int. J. Netw. Secur, 2009, 9(3):201-203.
    4 Xie Q. A new authenticated key agreement for session initiation protocol. International Journal of Communication Systems, 2012, 25(1):47-54.
    5 Liu FW, Koenig H. Cryptanalysis of a SIP authentication scheme. Communications and Multimedia Security, Springer Berlin, Heidelberg, 2011:134-143.
    6 He DB, Chen JH, Zhang R. A more secure authentication scheme for telecare medicine information systems. Journal of Medical Systems, 2012, 36(3):1989-1995.
    7 Yang CC, Wang RC, Liu WT. Secure authentication scheme for session initiation protocol.Computers and Security, 2005, 24:381-386.
    8 Durlanik A, Sogukpinar I. SIP authentication scheme using ECDH. World Enformatika Socity Trans. on Engineering Computing and Technology, 2005, 8:350-353.
    9 Tsai JL. Efficient nonce-based authentication scheme for session initiation protocol. International Journal of Network Security, 2009, 8(3):312-316.
    10 Yoon EJ, Yoo KY. A three-factor authenticated key agreement scheme for SIP on elliptic curves. Proc. of the 2010 Fourth International Conference on Network and System Security, 2010:334-339.
    11 Arshad R, Ikram N. Elliptic curve cryptography based mutual authentication scheme for session initiation protocol. Multimedia Tools and Applications, 2011, 10(11):787-789.
    12 曹阳,郝玉洁,洪歧.一种基于ECDLP有身份认证的ECDH密钥协商方案.重庆邮电大学学报,2012,24(1):118-120.
    引证文献
    网友评论
    网友评论
    分享到微博
    发 布
引用本文

曹阳.基于ECDLP的SIP认证密钥协商协议.计算机系统应用,2016,25(3):225-228

复制
分享
文章指标
  • 点击次数:1388
  • 下载次数: 2371
  • HTML阅读次数: 0
  • 引用次数: 0
历史
  • 收稿日期:2015-06-02
  • 最后修改日期:2015-09-06
  • 在线发布日期: 2016-03-17
文章二维码
您是第11572653位访问者
版权所有:中国科学院软件研究所 京ICP备05046678号-3
地址:北京海淀区中关村南四街4号 中科院软件园区 7号楼305房间,邮政编码:100190
电话:010-62661041 传真: Email:csa (a) iscas.ac.cn
技术支持:北京勤云科技发展有限公司

京公网安备 11040202500063号