DocumentCode
7704
Title
Cryptanalysis of two dynamic identity based authentication schemes for multi-server architecture
Author
Wan Tao ; Jiang Nan ; Ma Jianfeng
Author_Institution
Sch. of Comput., Xidian Univ., Xi´an, China
Volume
11
Issue
11
fYear
2014
fDate
Nov. 2014
Firstpage
125
Lastpage
134
Abstract
Since network services are provided cooperatively by multiple servers in the Internet, the authentication protocols for multiserver architecture are required by Internet-based services, such as online game, online trade and so on. Recently, Li et al. analyzed Lee et al.´s protocol and proposed an improved dynamic identity based authentication protocol for multi-server architecture. They claimed that their protocol provides user´s anonymity, mutual authentication and the session key agreement against several kinds of attacks. In this paper, a cryptanalysis on Lee et al.´s scheme shows that Lee et al.´s protocol is also vulnerable to malicious server attack, stolen smart card attack and leak-of-verifier attack. Moreover, Li et al.´s improved protocol is also vulnerable to all these attacks. Further cryptanalysis reveals that Li et al.´s improved protocol is susceptible to collusion attack.
Keywords
Internet; cryptographic protocols; Internet-based services; authentication protocols; collusion attack; dynamic identity based authentication schemes; leak-of-verifier attack; malicious server attack; multiserver architecture; mutual authentication; session key agreement; stolen smart card attack; Authentication; Cryptography; Internet; Protocols; Servers; Smart cards; Dynamic ID; anonymity; authentication; multi-server; smart card;
fLanguage
English
Journal_Title
Communications, China
Publisher
ieee
ISSN
1673-5447
Type
jour
DOI
10.1109/CC.2014.7004530
Filename
7004530
Link To Document