Browse > Article
http://dx.doi.org/10.9717/kmms.2011.14.6.785

A Study on One-Time Password Authentication Scheme in Mobile Environment  

Kim, Hong-Gi (순천향대학교 컴퓨터학과)
Lee, Im-Yeong (순천향대학교 컴퓨터소프트웨어공학과)
Publication Information
Abstract
Since then, with the advance of computing environment, various Internet services are emerging and the importance of user authentication technology is increasing for verifying users authorized to use such services. Along with the advance of authentication technology, research is being made actively on one time password, which is used once in a session and then discarded. In existing one time passwords, however, the values of one time passwords in a created table are stored in serial order, and therefore, if the seed value and the number of one time passwords used are disclosed, one may infer the value of the one time password to be used next. What is more, one time passwords of the S/Key type have the problem that the number of uses is fixed. In this paper, We analysis the existing one time password. Also, We propose one time password methods using elliptic curve cryptography scheme and using enhanced randomness with time value.
Keywords
Mobile OTP; One-Time Password; OTP; S/Key; User Authentication;
Citations & Related Records
Times Cited By KSCI : 4  (Citation Analysis)
연도 인용수 순위
1 박중길, 김영진, 김영길, 백규태, 백기영, 류재철, "S/Key를 개선한 일회용 패스워드 메커니즘 개발," 정보보호논문지 Vol.9 No.2. 1999.
2 양대헌, 송주석, "타원 곡선을 이용한 암호 시스템," 정보보호학회지 제7권, 제4호, pp.5-12, 1997.
3 금융보안연구원, "모바일 OTP 보안성 분석서," FSA.TS4.MOS v1.0, 2009. 11.
4 최동현, 김승주, 원동호 "일회용패스워드 기술분석 및 표준화 동향," 정보보호학회지 제17권 제3호, pp.12-17, 2007.
5 서승현, 강우진, "OTP 기술현황 및 국내 금융권 OTP 도입사례," 정보보호학회지 제17권 제3호, pp.18-25, 2007.
6 문용혁, 권혁찬, 나재훈, 장종수, "P2P 사용자 인증과 OTP분석," 정보보호학회지, 제17권 제3호, pp.32-40 2007.
7 N. M. Haller, "The S/Key One-Time Password System," RFC 1760, 1995.
8 N. M. Haller and C. Metz, P. Nesser, and M. Straw, "A One-Time Password System," RFC 2289, 1998.
9 S. D. Park, J. C. Na, Y. H Kim, and D. K Kim, "Efficient OTP(One Time Password) Generation using AES-based MAC," 한국멀티미디어학회논문지, V.11, No.6, pp.845-851, 2008.
10 J. Archer Harris, "OPA : A One-Time Password System," 10.1109 /ICPPW. 2002, 1039708, 2002.