作者
Vanga Odelu, Ashok Kumar Das, Adrijit Goswami
发表日期
2015/6/1
期刊
IEEE Transactions on Information Forensics and Security
卷号
10
期号
9
页码范围
1953-1966
出版商
IEEE
简介
Recently, in 2014, He and Wang proposed a robust and efficient multi-server authentication scheme using biometrics-based smart card and elliptic curve cryptography (ECC). In this paper, we first analyze He-Wang's scheme and show that their scheme is vulnerable to a known session-specific temporary information attack and impersonation attack. In addition, we show that their scheme does not provide strong user's anonymity. Furthermore, He-Wang's scheme cannot provide the user revocation facility when the smart card is lost/stolen or user's authentication parameter is revealed. Apart from these, He-Wang's scheme has some design flaws, such as wrong password login and its consequences, and wrong password update during password change phase. We then propose a new secure multi-server authentication protocol using biometric-based smart card and ECC with more security functionalities. Using the …
引用总数
20152016201720182019202020212022202320244384962615966513718
学术搜索中的文章
V Odelu, AK Das, A Goswami - IEEE Transactions on information forensics and …, 2015