• DocumentCode
    7704
  • Title

    Cryptanalysis of two dynamic identity based authentication schemes for multi-server architecture

  • Author

    Wan Tao ; Jiang Nan ; Ma Jianfeng

  • Author_Institution
    Sch. of Comput., Xidian Univ., Xi´an, China
  • Volume
    11
  • Issue
    11
  • fYear
    2014
  • fDate
    Nov. 2014
  • Firstpage
    125
  • Lastpage
    134
  • Abstract
    Since network services are provided cooperatively by multiple servers in the Internet, the authentication protocols for multiserver architecture are required by Internet-based services, such as online game, online trade and so on. Recently, Li et al. analyzed Lee et al.´s protocol and proposed an improved dynamic identity based authentication protocol for multi-server architecture. They claimed that their protocol provides user´s anonymity, mutual authentication and the session key agreement against several kinds of attacks. In this paper, a cryptanalysis on Lee et al.´s scheme shows that Lee et al.´s protocol is also vulnerable to malicious server attack, stolen smart card attack and leak-of-verifier attack. Moreover, Li et al.´s improved protocol is also vulnerable to all these attacks. Further cryptanalysis reveals that Li et al.´s improved protocol is susceptible to collusion attack.
  • Keywords
    Internet; cryptographic protocols; Internet-based services; authentication protocols; collusion attack; dynamic identity based authentication schemes; leak-of-verifier attack; malicious server attack; multiserver architecture; mutual authentication; session key agreement; stolen smart card attack; Authentication; Cryptography; Internet; Protocols; Servers; Smart cards; Dynamic ID; anonymity; authentication; multi-server; smart card;
  • fLanguage
    English
  • Journal_Title
    Communications, China
  • Publisher
    ieee
  • ISSN
    1673-5447
  • Type

    jour

  • DOI
    10.1109/CC.2014.7004530
  • Filename
    7004530