摘要
为研究安全保密程度高且轻量级的身份验证方案,在Chebyshev混沌映射和模糊提取器的基础上,提出一种多服务器身份验证方案。利用模糊提取器理念,准确实现生物特征模式匹配;为进一步改善用户匿名性和不可追踪性,使用Chebyshev混沌映射建立包含前向保密性的会话密钥。BAN逻辑证明了提出方案的准确性。与其它同类优秀方案比较,提出方案在身份验证的保密性和安全性方面更优,时间复杂度适中,更加适用于多服务器环境。
To study a high security and lightweight authentication scheme,on the basis of Chebyshev chaotic map and fuzzy extractor,an authenticated scheme for multi-server environments was proposed.The concept of fuzzy extractor was used to provide the proper matching of biometric patterns.Chebyshev chaotic map was used to establish session key with forward secrecy property,to further improve the user anonymity and traceability.Through BAN-logic-based formal security analysis,the correctness of the proposed scheme was proved.Compared with other schemes,the proposed scheme is better in privacy and security of authentication with moderate time-complexity,which possesses higher usability in real multi-server environments.
作者
张萌
刘秋红
宫继兵
ZHANG Meng;LIU Qiu-hong;GONG Ji-bing(Department of Electronic Information, Tangshan Polytechnic College, Tangshan 063299, China;College of Information Science and Engineering, Yanshan University, Qinhuangdao 066004, China)
出处
《计算机工程与设计》
北大核心
2018年第12期3655-3660,3673,共7页
Computer Engineering and Design
基金
河北省自然科学基金青年基金项目(F2014203099)
2017年度唐山市科技计划基金项目(17140212a)