An Efficient and Robust Anonymous Authentication Scheme in Global Mobility Networks
نویسنده
چکیده
Anonymous user authentication is an essential security mechanism for roaming services in global mobility networks (GLOMONET). Recently, Zhao et al. propose a two-factor anonymous authentication scheme to achieve mutual authentication and session key establishment between the mobile user (MU) and a foreign agent (FA). This paper shows that their scheme has some security vulnerabilities and operational inefficiencies: (1) The scheme fails to protect against a strong replay attack, (2) it is impractical because it requires the predistribution of system parameters, and (3) it is inefficient because of unnecessary encryption/decryption operations. To remedy these weaknesses, this paper proposes a novel anonymous authentication scheme using a smart card. The proposed scheme provides security requirements such as user anonymity, perfect forward secrecy, correct password change, authentication when the MU is located in the home network (HN), and no predistribution of system parameters. In addition, the proposed scheme is secure against various attacks such as impersonation attack, replay attack, off-line password attack, insider attack, stolen-verifier attack, and local password attack. A performance analysis and a comparison with existing schemes show that the proposed scheme is more suitable for low-power and resource-limited mobile environments.
منابع مشابه
A More Robust Authentication Scheme for Roaming Service in Global Mobility Networks Using ECC
In 2012, Chuang et al. proposed a smart card based anonymous user authentication scheme for roaming service in global mobility networks. In this paper, however, we analyze Chuang et al.’s scheme and show that their scheme is in fact insecure to against server masquerading attack, off-line dictionary attack and user impersonation attack. Moreover, their scheme cannot achieve the claimed user ano...
متن کاملLightweight anonymous authentication scheme with unlinkability in global mobility networks
Anonymous user authentication schemes are essential to guarantee personal privacy in global mobility networks. Recently, Chung, Lee and Won proposed an improved authentication scheme with anonymity which remedies security weaknesses showed by Youn, Park and Lim. However, their improved scheme does not provide unlinkability. In this paper, we propose an anonymous authentication scheme which ensu...
متن کاملA Secure and Effective Anonymous Authentication Scheme for Roaming Service in Global Mobility Networks
Recently, Mun et al. analyzed Wu et al.’s authentication scheme and proposed a enhanced anonymous authentication scheme for roaming service in global mobility networks. However, through careful analysis, we find that Mun et al.’s scheme is vulnerable to impersonation attacks, off-line password guessing attacks and insider attacks, and cannot provide user friendliness, user’s anonymity, proper m...
متن کاملA Secure and Effective Anonymous User Authentication Scheme for Roaming Service in Global Mobility Networks
In global mobility networks, anonymous user authentication is an essential task for enabling roaming service. In a recent paper, Jiang et al. proposed a smart card based anonymous user authentication scheme for roaming service in global mobility networks. This scheme can protect user privacy and is believed to have many abilities to resist a range of network attacks, even if the secret informat...
متن کاملAn efficient non-repudiation billing protocol in heterogeneous 3G-WLAN networks
The wireless communication with delivering variety of services to users is growing rapidly in recent years. The third generation of cellular networks (3G), and local wireless networks (WLAN) are the two widely used technologies in wireless networks. 3G networks have the capability of covering a vast area; while, WLAN networks provide higher transmission rates with less coverage. Since the two n...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2015