Cargando…

Cryptanalysis and improvement of a biometrics-based authentication and key agreement scheme for multi-server environments

According to advancements in the wireless technologies, study of biometrics-based multi-server authenticated key agreement schemes has acquired a lot of momentum. Recently, Wang et al. presented a three-factor authentication protocol with key agreement and claimed that their scheme was resistant to...

Descripción completa

Detalles Bibliográficos
Autores principales: Yang, Li, Zheng, Zhiming
Formato: Online Artículo Texto
Lenguaje:English
Publicado: Public Library of Science 2018
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC5849336/
https://www.ncbi.nlm.nih.gov/pubmed/29534085
http://dx.doi.org/10.1371/journal.pone.0194093
_version_ 1783306035636731904
author Yang, Li
Zheng, Zhiming
author_facet Yang, Li
Zheng, Zhiming
author_sort Yang, Li
collection PubMed
description According to advancements in the wireless technologies, study of biometrics-based multi-server authenticated key agreement schemes has acquired a lot of momentum. Recently, Wang et al. presented a three-factor authentication protocol with key agreement and claimed that their scheme was resistant to several prominent attacks. Unfortunately, this paper indicates that their protocol is still vulnerable to the user impersonation attack, privileged insider attack and server spoofing attack. Furthermore, their protocol cannot provide the perfect forward secrecy. As a remedy of these aforementioned problems, we propose a biometrics-based authentication and key agreement scheme for multi-server environments. Compared with various related schemes, our protocol achieves the stronger security and provides more functionality properties. Besides, the proposed protocol shows the satisfactory performances in respect of storage requirement, communication overhead and computational cost. Thus, our protocol is suitable for expert systems and other multi-server architectures. Consequently, the proposed protocol is more appropriate in the distributed networks.
format Online
Article
Text
id pubmed-5849336
institution National Center for Biotechnology Information
language English
publishDate 2018
publisher Public Library of Science
record_format MEDLINE/PubMed
spelling pubmed-58493362018-03-23 Cryptanalysis and improvement of a biometrics-based authentication and key agreement scheme for multi-server environments Yang, Li Zheng, Zhiming PLoS One Research Article According to advancements in the wireless technologies, study of biometrics-based multi-server authenticated key agreement schemes has acquired a lot of momentum. Recently, Wang et al. presented a three-factor authentication protocol with key agreement and claimed that their scheme was resistant to several prominent attacks. Unfortunately, this paper indicates that their protocol is still vulnerable to the user impersonation attack, privileged insider attack and server spoofing attack. Furthermore, their protocol cannot provide the perfect forward secrecy. As a remedy of these aforementioned problems, we propose a biometrics-based authentication and key agreement scheme for multi-server environments. Compared with various related schemes, our protocol achieves the stronger security and provides more functionality properties. Besides, the proposed protocol shows the satisfactory performances in respect of storage requirement, communication overhead and computational cost. Thus, our protocol is suitable for expert systems and other multi-server architectures. Consequently, the proposed protocol is more appropriate in the distributed networks. Public Library of Science 2018-03-13 /pmc/articles/PMC5849336/ /pubmed/29534085 http://dx.doi.org/10.1371/journal.pone.0194093 Text en © 2018 Yang, Zheng http://creativecommons.org/licenses/by/4.0/ This is an open access article distributed under the terms of the Creative Commons Attribution License (http://creativecommons.org/licenses/by/4.0/) , which permits unrestricted use, distribution, and reproduction in any medium, provided the original author and source are credited.
spellingShingle Research Article
Yang, Li
Zheng, Zhiming
Cryptanalysis and improvement of a biometrics-based authentication and key agreement scheme for multi-server environments
title Cryptanalysis and improvement of a biometrics-based authentication and key agreement scheme for multi-server environments
title_full Cryptanalysis and improvement of a biometrics-based authentication and key agreement scheme for multi-server environments
title_fullStr Cryptanalysis and improvement of a biometrics-based authentication and key agreement scheme for multi-server environments
title_full_unstemmed Cryptanalysis and improvement of a biometrics-based authentication and key agreement scheme for multi-server environments
title_short Cryptanalysis and improvement of a biometrics-based authentication and key agreement scheme for multi-server environments
title_sort cryptanalysis and improvement of a biometrics-based authentication and key agreement scheme for multi-server environments
topic Research Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC5849336/
https://www.ncbi.nlm.nih.gov/pubmed/29534085
http://dx.doi.org/10.1371/journal.pone.0194093
work_keys_str_mv AT yangli cryptanalysisandimprovementofabiometricsbasedauthenticationandkeyagreementschemeformultiserverenvironments
AT zhengzhiming cryptanalysisandimprovementofabiometricsbasedauthenticationandkeyagreementschemeformultiserverenvironments