Cargando…

Cryptanalysis and Improvement of "A Secure Password Authentication Mechanism for Seamless Handover in Proxy Mobile IPv6 Networks"

Proxy Mobile IPv6 is a network-based localized mobility management protocol that supports mobility without mobile nodes’ participation in mobility signaling. The details of user authentication procedure are not specified in this standard, hence, many authentication schemes have been proposed for thi...

Descripción completa

Detalles Bibliográficos
Autores principales: Alizadeh, Mojtaba, Zamani, Mazdak, Baharun, Sabariah, Abdul Manaf, Azizah, Sakurai, Kouichi, Anada, Hiroki, Keshavarz, Hassan, Ashraf Chaudhry, Shehzad, Khurram Khan, Muhammad
Formato: Online Artículo Texto
Lenguaje:English
Publicado: Public Library of Science 2015
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC4651333/
https://www.ncbi.nlm.nih.gov/pubmed/26580963
http://dx.doi.org/10.1371/journal.pone.0142716
_version_ 1782401623372333056
author Alizadeh, Mojtaba
Zamani, Mazdak
Baharun, Sabariah
Abdul Manaf, Azizah
Sakurai, Kouichi
Anada, Hiroki
Keshavarz, Hassan
Ashraf Chaudhry, Shehzad
Khurram Khan, Muhammad
author_facet Alizadeh, Mojtaba
Zamani, Mazdak
Baharun, Sabariah
Abdul Manaf, Azizah
Sakurai, Kouichi
Anada, Hiroki
Keshavarz, Hassan
Ashraf Chaudhry, Shehzad
Khurram Khan, Muhammad
author_sort Alizadeh, Mojtaba
collection PubMed
description Proxy Mobile IPv6 is a network-based localized mobility management protocol that supports mobility without mobile nodes’ participation in mobility signaling. The details of user authentication procedure are not specified in this standard, hence, many authentication schemes have been proposed for this standard. In 2013, Chuang et al., proposed an authentication method for PMIPv6, called SPAM. However, Chuang et al.’s Scheme protects the network against some security attacks, but it is still vulnerable to impersonation and password guessing attacks. In addition, we discuss other security drawbacks such as lack of revocation procedure in case of loss or stolen device, and anonymity issues of the Chuang et al.’s scheme. We further propose an enhanced authentication method to mitigate the security issues of SPAM method and evaluate our scheme using BAN logic.
format Online
Article
Text
id pubmed-4651333
institution National Center for Biotechnology Information
language English
publishDate 2015
publisher Public Library of Science
record_format MEDLINE/PubMed
spelling pubmed-46513332015-11-25 Cryptanalysis and Improvement of "A Secure Password Authentication Mechanism for Seamless Handover in Proxy Mobile IPv6 Networks" Alizadeh, Mojtaba Zamani, Mazdak Baharun, Sabariah Abdul Manaf, Azizah Sakurai, Kouichi Anada, Hiroki Keshavarz, Hassan Ashraf Chaudhry, Shehzad Khurram Khan, Muhammad PLoS One Research Article Proxy Mobile IPv6 is a network-based localized mobility management protocol that supports mobility without mobile nodes’ participation in mobility signaling. The details of user authentication procedure are not specified in this standard, hence, many authentication schemes have been proposed for this standard. In 2013, Chuang et al., proposed an authentication method for PMIPv6, called SPAM. However, Chuang et al.’s Scheme protects the network against some security attacks, but it is still vulnerable to impersonation and password guessing attacks. In addition, we discuss other security drawbacks such as lack of revocation procedure in case of loss or stolen device, and anonymity issues of the Chuang et al.’s scheme. We further propose an enhanced authentication method to mitigate the security issues of SPAM method and evaluate our scheme using BAN logic. Public Library of Science 2015-11-18 /pmc/articles/PMC4651333/ /pubmed/26580963 http://dx.doi.org/10.1371/journal.pone.0142716 Text en © 2015 Alizadeh et al http://creativecommons.org/licenses/by/4.0/ This is an open-access article distributed under the terms of the Creative Commons Attribution License, which permits unrestricted use, distribution, and reproduction in any medium, provided the original author and source are properly credited.
spellingShingle Research Article
Alizadeh, Mojtaba
Zamani, Mazdak
Baharun, Sabariah
Abdul Manaf, Azizah
Sakurai, Kouichi
Anada, Hiroki
Keshavarz, Hassan
Ashraf Chaudhry, Shehzad
Khurram Khan, Muhammad
Cryptanalysis and Improvement of "A Secure Password Authentication Mechanism for Seamless Handover in Proxy Mobile IPv6 Networks"
title Cryptanalysis and Improvement of "A Secure Password Authentication Mechanism for Seamless Handover in Proxy Mobile IPv6 Networks"
title_full Cryptanalysis and Improvement of "A Secure Password Authentication Mechanism for Seamless Handover in Proxy Mobile IPv6 Networks"
title_fullStr Cryptanalysis and Improvement of "A Secure Password Authentication Mechanism for Seamless Handover in Proxy Mobile IPv6 Networks"
title_full_unstemmed Cryptanalysis and Improvement of "A Secure Password Authentication Mechanism for Seamless Handover in Proxy Mobile IPv6 Networks"
title_short Cryptanalysis and Improvement of "A Secure Password Authentication Mechanism for Seamless Handover in Proxy Mobile IPv6 Networks"
title_sort cryptanalysis and improvement of "a secure password authentication mechanism for seamless handover in proxy mobile ipv6 networks"
topic Research Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC4651333/
https://www.ncbi.nlm.nih.gov/pubmed/26580963
http://dx.doi.org/10.1371/journal.pone.0142716
work_keys_str_mv AT alizadehmojtaba cryptanalysisandimprovementofasecurepasswordauthenticationmechanismforseamlesshandoverinproxymobileipv6networks
AT zamanimazdak cryptanalysisandimprovementofasecurepasswordauthenticationmechanismforseamlesshandoverinproxymobileipv6networks
AT baharunsabariah cryptanalysisandimprovementofasecurepasswordauthenticationmechanismforseamlesshandoverinproxymobileipv6networks
AT abdulmanafazizah cryptanalysisandimprovementofasecurepasswordauthenticationmechanismforseamlesshandoverinproxymobileipv6networks
AT sakuraikouichi cryptanalysisandimprovementofasecurepasswordauthenticationmechanismforseamlesshandoverinproxymobileipv6networks
AT anadahiroki cryptanalysisandimprovementofasecurepasswordauthenticationmechanismforseamlesshandoverinproxymobileipv6networks
AT keshavarzhassan cryptanalysisandimprovementofasecurepasswordauthenticationmechanismforseamlesshandoverinproxymobileipv6networks
AT ashrafchaudhryshehzad cryptanalysisandimprovementofasecurepasswordauthenticationmechanismforseamlesshandoverinproxymobileipv6networks
AT khurramkhanmuhammad cryptanalysisandimprovementofasecurepasswordauthenticationmechanismforseamlesshandoverinproxymobileipv6networks