

Selective Timestamp-Nonce Based Authentication Scheme



In this paper, we improve an efficient and complete remote user authentication scheme and propose an adaptive timestamp-nonce based authentication scheme using portable storage devices. Compared with other smart card-based, timestamp-based and nonce-based schemes, our scheme achieves more functionality. The new importance merits are: An adaptive timestamp-nonce structure is proposed; portable device stores authentication data not only smart card; all transactions through non-secure channel, especially in the registration phase, and batch of portable storage devices is issued. Besides, the basic merits include a dictionary of verification tables is not required to authenticate users, users can choose their password freely, mutual authentication is provided between a user and the re- mote system, the communication cost and the computational cost are very low, a user can update their password after the registration phase, a session key agreed by a user and the remote system is generated in every session and the serious time synchronization problem are solved.


 1 Introduction
 2 Our scheme
  2.1 Registration phase
  2.2 Login phase
  2.3 Veri cation phase
  2.4 Session phase
  2.5 Updated password phase
  2.6 Batch of storage devices is issued
 3 Security analysis
  3.1 Impersonate attack
  3.2 Replay attack
  3.3 Eavesdropping attack
  3.4 Stolen veri er attack
  3.5 Denial of Service attack
  3.6 Man-in-the-middle attack
 4 Eciency
 5 Conclusion


  • Wei-Chen Wu Computer Center, Hsin Sheng College of Medical Care and Management, Taoyuan County, Taiwan, R.O.C.
  • Horng-Twu Liaw Department of Information Management, Shih Hsin University, Taipei, Taiwan, R.O.C.
  • Yi-Ming Chen Department of Information Management, National Central University, Jhongli City, Taoyuan County, Taiwan, R.O.C.


자료제공 : 네이버학술정보

    함께 이용한 논문

      ※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

      0개의 논문이 장바구니에 담겼습니다.