详细信息

身份认证方案的安全性分析    

Security Analysis of An Authentication Scheme

文献类型:期刊文献

中文题名:身份认证方案的安全性分析

英文题名:Security Analysis of An Authentication Scheme

作者:黄建华[1];田昌勇[1];宋国新[1]

机构:[1]华东理工大学计算机科学与工程系,上海200237

年份:2009

卷号:35

期号:5

起止页码:740

中文期刊名:华东理工大学学报(自然科学版)

外文期刊名:Journal of East China University of Science and Technology

收录:CSTPCD;;Scopus;北大核心:【北大核心2008】;CSCD:【CSCD2011_2012】;

语种:中文

中文关键词:认证;入侵容忍;秘密共享;安全分析

外文关键词:authentication; intrusion-tolerant; secret sharing; security analysis

摘要:针对入侵容忍身份认证方案的安全性进行了详细分析,并用状态转移图描述了系统的安全行为。该方案的特点是基于Shamir秘密共享算法将用户密码分片后存储在多个认证服务器中,使得少数服务器受到入侵时仍能继续提供正确的认证服务,且在认证身份时不需要重构用户原来的密码数据,提高了认证系统的可用性、完整性和机密性。
This paper gives a detailed analysis on the security of an authentication scheme with intrusion-tolerant feature. A state transition diagram is used to describe the security behavior of the system. The characteristics of the proposed scheme are that a user password is split to store in distributed shared servers by using Shamir's secret sharing. Thus, valid authentication services are continuously available even though the minority of shared servers are compromised. Moreover, the original password data is not required to be constructed during authentication processes. Hence, the availability, integrity and confidentiality of authentication system will be enhanced by means of the present scheme.

参考文献:

正在载入数据...

版权所有©华东理工大学 重庆维普资讯有限公司 渝B2-20050021-7 
渝公网安备 50019002500408号 违法和不良信息举报中心