A secure and efficient strong-password authentication protocol
2004; Association for Computing Machinery; Volume: 38; Issue: 3 Linguagem: Inglês
10.1145/1035834.1035844
ISSN1943-586X
AutoresYa‐Fen Chang, Chin‐Chen Chang,
Tópico(s)Biometric Identification and Security
ResumoPassword authentication protocols are divided into two types. One employs the easy-to-remember password while the other requires the strong password. In 2001, Lin et al. proposed an optimal strong-password authentication protocol (OSPA) to resist the replay attack and the denial-of-service attack. However, Chen and Ku pointed out that the OSPA protocol is vulnerable to the stolen-verifier attack. Hence, Lin et al. presented an enhancement in 2003. Nevertheless, mutual authentication is not ensured in Lin et al.'s protocol such that it suffers from the server spoofing attack. Moreover, Lin et al.'s protocol is also vulnerable to the denial-of-service attack. As a result, we present a secure strong-password authentication protocol in this paper to overcome their disadvantages.
Referência(s)