An Attacking and Improvement on a Remote Dynamic Password Authentication
Wang Yao-mi
Abstract
Wang Yao-mi
Abstract
Password authentication is a hot research field of identity verification, in recent years many authentication protocolbased on password is proposed. This paper analyses the safety of a remote dynamic password authentication protocol, and it is point-ed out that the authentication protocol vulnerabilities cannot resist the impersonation attack and the man in the middle attack. It isimproved in this paper, propose a protocol named SH-Key remote dynamic password authentication. Through the security analysisshows that this protocol can provide a safe, efficient remote dynamic password authentication.
A significance statement is not available in the OpenAlex record.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
Password authentication is a hot research field of identity verification, in recent years many authentication protocolbased on password is proposed. This paper analyses the safety of a remote dynamic password authentication protocol, and it is point-ed out that the authentication protocol vulnerabilities cannot resist the impersonation attack and the man in the middle attack. It isimproved in this paper, propose a protocol named SH-Key remote dynamic password authentication. Through the security analysisshows that this protocol can provide a safe, efficient remote dynamic password authentication.
Key concepts: Password, S/KEY, Computer science, Challenge–response authentication, One-time password, Authentication protocol, Computer security, Challenge-Handshake Authentication Protocol