Browse > Article
http://dx.doi.org/10.13089/JKIISC.2017.27.2.329

A Study on the Smartcard-Based Authentication Protocol Design with Advanced Security in the Multiple Server Environments  

Bae, Won-il (ISAA Lab., Department of Computer Engineering, Ajou University)
Kwak, Jin (Department of Cyber Security, Ajou University)
Abstract
A multi-server architecture has been proposed to increase the efficiency of resources due to the rapid growth of computer networks and service providing servers. The smartcard-based authentication protocol in the multi-server environments has been continuously developed through various studies. Recently, Chun-Ta Li et al proposed an authentication protocol that solves Xiong Li el al's authentication protocol vulnerability to user impersonation attack and session key disclosure attack. However, Chun-Ta Li et al's authentication protocol has a problem with user impersonation in the vulnerability analysis and has an unsuitable authentication process. Therefore, this paper proposes a smartcard-based authentication protocol in the multi-server environments that solves the denial of service attack and replay attack vulnerabilities of the authentication protocol proposed by Xiong Li et al.
Keywords
Multi-Server Architecture; Smart card; Authentication protocol;
Citations & Related Records
연도 인용수 순위
  • Reference
1 Ashish Singh, Kakali Chatterjee, "An Efficient Three Factor Based Remote User Authentication Protocol for Distributed Networks" Computer Information Systems and Industrial Management, Vol 9842, pp 682-693, Sept. 2016.
2 R. Abdellatif, H. K. Aslan and S. H. Elramly, "New real time multicast authentication protocol", International Journal of Network Security, Vol 12, pp. 13-20, 2011.
3 C. C. Chang, H. L. Wu, Z. H. Wang, and Q. Mao, "An efficient smart card based authentication scheme using image encryption", Journal of Information Science and Engineering, Vol 29, pp. 1135-1150, Nov. 2013.
4 E. El-Emam, M. Koutb, H. Kelash and O. S. Faragallah, "An authentication protocol based on Kerberos 5", International Journal of Network Security, Vol 12, pp. 159-170, May. 2011,
5 D. He, J. Chen and J. Hu, "Weaknesses of a remote user password authentication scheme using smart card", International Journal of Network Security, Vol 13, pp. 58-60, Feb. 2011.
6 M. S. Hwang, S. K. Chong and T. Y. Chen, "Dos-resistant ID-based password authentication scheme using smart cards", Journal of Systems and Software, Vol 83, pp. 163-172, Jan. 2010.   DOI
7 C. C. Lee, T. H. Lin and R. X. Chang, "A secure dynamic ID based remote user authentication scheme for multi-server environment using smart cards", Expert Systems with Applications, Vol 38, pp. 13863-13870, Oct. 2011.
8 X. Li, Y. Xiong, J. Ma, W. Wang, "An efficient and security dynamic identity based authentication protocol for multi-server architecture using smart cards", Journal of Network and Computer Applications, Vol 35, pp. 763-769, Mar. 2012.   DOI
9 H. C. Hsiang, W. K. Shih, "Improvement of the secure dynamic ID based remote user authentication scheme for multi-server environment", Computer Standards and Interfaces, Vol 31, pp. 1118-1123, Nov. 2009.   DOI
10 Y.P Liao, S. S. Wang, "A secure dynamic ID based remote user authentication scheme for multi-server environment" Computer Standards and Interfaces, Vol 31, pp. 24-29, Oct. 2009.   DOI
11 S. K. Sood, A. K. Sarje and K. Singh, "A secure dynamic identity based authentication protocol for multi-server architecture", Journal of Network and Computer Applications, Vol 34, pp. 609-618, Mar. 2011.   DOI
12 Chun-Ta Li, Cheng-Chi Lee, Chi-Yao Weng, Chun-I Fan, "A Secure Dynamic Identity Based Authentication Protocol with Smart Cards for Multi-Server Architecture", Journal of Information Science and Engineering 31, 1975-1992, Oct. 2014.