• 中国计算机学会会刊
  • 中国科技核心期刊
  • 中文核心期刊

J4 ›› 2014, Vol. 36 ›› Issue (09): 1711-1715.

• 论文 • 上一篇    下一篇

一种安全高效的智能卡口令认证方案

黄朝阳,吴正英,罗少兰   

  1. (厦门海洋学院信息技术系,福建 厦门 361100)
  • 收稿日期:2013-08-13 修回日期:2013-12-19 出版日期:2014-09-25 发布日期:2014-09-25
  • 基金资助:

    福建省中青年教师教育科研资助项目(JA13409)

An secure and efficient dynamic password
authentication protocol based on smart card and fingerprint              

HUANG Chaoyang,WU Zhengying,LUO Shaolan   

  1. (Department of Information and Technology,Xiamen Ocean College,Xiamen 361100,China)
  • Received:2013-08-13 Revised:2013-12-19 Online:2014-09-25 Published:2014-09-25

摘要:

针对Khan M K方案存在的缺陷进行分析,详细阐述可能的攻击方法及步骤,总结提出一种改良的基于生物特征和智能卡的口令身份认证方案。改良方案延用简单高效的杂凑和异或操作,但填补了原方案中的诸多漏洞,不失为一个高效可行的远程身份认证协议。

关键词: 身份认证, 动态口令, 智能卡, 指纹, Hash函数

Abstract:

The shortages existing in Khan et al’s scheme are analyzed carefully and its possible attack methods and steps are expounded.Then,an improved remote authentication scheme is introduced,which is based on biologic character and smart card.The new scheme ueses simple and effective hash and exclusiveor operations and can fill the many loopholes in the original scheme.Therefore,the proposal is an efficient and feasible remote authentication protocol.

Key words: Identity authentication;dynamic password;smart card;fingerprint;Hash function