An Improved Remote User Authentication Scheme Using Elliptic Curve Cryptography

作者:Chaudhry Shehzad Ashraf; Naqvi Husnain; Mahmood Khalid; Ahmad Hafiz Farooq; Khan Muhammad Khurram
来源:Wireless Personal Communications, 2017, 96(4): 5355-5373.
DOI:10.1007/s11277-016-3745-3

摘要

Internet of Things has drastically expanded the global network for information exchange, because thousands of communication devices are becoming part of the global network. Besides the numerous benefits of global network expansion, secure communication and authentication among the comprising elements of the global network is also posing great challenges. Recently, Huang et al. proposed a key agreement scheme in order to facilitate user authenticity using elliptic curve cryptography. Huang et al. further emphasized the scheme is secure. Nevertheless, comprehensive analysis in this paper, demonstrates that Huang et al. scheme has correctness issues and is prone to impersonation/ forgery attack. Then an improved scheme is presented to tenacity the said glitches existent in Huang et al.' s scheme. The security analysis of proposed scheme is substantiated in random oracle model. Furthermore, a simulation of proposed scheme is carried out by automated formal tool ProVerif. The performance and security assessments show that the scheme presented in this paper withstand impersonation attack and offers adequate security while reducing significant computation cost as compared with Huang et al.'s scheme. Hence, due to better performance and security, the proposed scheme is the appropriate one for security sensitive and resource constrained environments.

  • 出版日期2017-10