Abstract:Since there is a chance to expose the user’s secret information during authentication, malicious adversaries may trace the user’s secret information and make illegal use of it, causing harm and loss of interest. For example, in the anonymous PAKA protocol based on SmartCard, there is no way to defend against the offline dictionary attack from adversaries after the SmartCard is lost. Therefore, the bilinear pairing operation, D-H difficulty and elliptic curve operation are combined with the registration and authentication, and then a new scheme is improved and designed utilizing password and smart card respectively. On the basis of the combination of a smart card with the improved password-based AKA scheme, an AKA protocol scheme relying on both the smart card and password is proposed, with the security proof given. It further improves the reliability and security of the PAKA protocol based on SmartCard and password.