DocumentCode :
3756171
Title :
Combining Fuzzy Extractor in Biometric-Kerberos Based Authentication Protocol
Author :
Thi Ai Thao Nguyen;Tran Khanh Dang
Author_Institution :
Fac. of Comput. Sci. &
fYear :
2015
Firstpage :
1
Lastpage :
6
Abstract :
Kerberos is a distributed authentication protocol which guarantees the mutual authentication between client and server over an insecure network. After the identification, all the subsequent communications are encrypted by session keys to ensure privacy and data integrity. In this paper, we have proposed a biometric authentication protocol based on Kerberos scheme. This protocol is not only resistant against attacks on the insecure network such as man-in-the-middle attack, replay attack, but also able to protect the biometric for using fuzzy extractor. This technique conceals the user´s biometric into the cryptographic key called biometric key. This key is used to verify a user in authentication phase. Therefore, there is no need to store users´ biometric in the database. Even if biometric keys is revealed, it is impossible for an attack to infer the users´ biometric for the high security of the fuzzy extractor scheme. The protocol also supports multi-factor authentication to enhance security of the entire system.
Keywords :
"Authentication","Protocols","Servers","Cryptography","Mobile communication","Databases"
Publisher :
ieee
Conference_Titel :
Advanced Computing and Applications (ACOMP), 2015 International Conference on
Type :
conf
DOI :
10.1109/ACOMP.2015.23
Filename :
7422367
Link To Document :
بازگشت