• DocumentCode
    1629123
  • Title

    An improvement of Liao et al.´s authentication scheme using smart cards

  • Author

    Sood, Sandeep K. ; Sarje, Anil K. ; Singh, Kuldip

  • Author_Institution
    Dept. of Electron.&Comput. Eng., Indian Inst. of Technol., Roorkee, India
  • fYear
    2010
  • Firstpage
    240
  • Lastpage
    245
  • Abstract
    In 2004, Das et al. proposed a dynamic identity based remote user authentication scheme. They claimed that their scheme is secure against different attacks. Unfortunately, many researchers demonstrated that Das et al. scheme is vulnerable to various attacks. Furthermore, this scheme does not achieve mutual authentication and thus can not resist malicious server attack. In 2005, Liao et al. improved Das et al.´s scheme and claimed that the improved scheme achieves mutual authentication, withstand password guessing attack and insider attack. In 2006, Yoon and Yoo demonstrated a reflection attack on Liao et al.´s scheme that breaks the mutual authentication. In this paper, we found that Liao et al.´s scheme is also vulnerable to malicious user attack, impersonation attack, stolen smart card attack and offline password guessing attack. Moreover, Liao et al.´s scheme does not maintain the user´s anonymity and its password change phase is insecure. This paper presents a secure dynamic identity based authentication scheme using smart cards to resolve the aforementioned problems, while keeping the merits of different dynamic identity based authentication schemes.
  • Keywords
    authorisation; computer crime; smart cards; Liao et al. scheme improvement; impersonation attack; malicious user attack; mutual authentication; offline password guessing attack; reflection attack; remote user authentication scheme; secure dynamic identity; smart cards; stolen smart card attack; Authentication; Communication channels; Cost function; Cryptographic protocols; Forgery; Identity-based encryption; Reflection; Resists; Security; Smart cards; Authentication protocol; Cryptography; Dynamic identity; Network security; Password; Smart card;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Advance Computing Conference (IACC), 2010 IEEE 2nd International
  • Conference_Location
    Patiala
  • Print_ISBN
    978-1-4244-4790-9
  • Electronic_ISBN
    978-1-4244-4791-6
  • Type

    conf

  • DOI
    10.1109/IADCC.2010.5423004
  • Filename
    5423004