作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2006, Vol. 32 ›› Issue (14): 149-150,. doi: 10.3969/j.issn.1000-3428.2006.14.055

• 安全技术 • 上一篇    下一篇

一次性口令身份认证方案的分析与改进

王 滨;张远洋   

  1. 解放军信息工程大学电子技术学院,郑州 450004
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2006-07-20 发布日期:2006-07-20

Analysis and Amendment of One-time Password Authentication Scheme

WANG Bin;ZHANG Yuanyang   

  1. Institute of Electronic Technology, PLA Information Engineering University, Zhengzhou 450004
  • Received:1900-01-01 Revised:1900-01-01 Online:2006-07-20 Published:2006-07-20

摘要: 分析了文献[1]中的一次性口令的身份认证方案,发现由于原方案是一个单向认证协议,因此不能抵抗中间人攻击,该文在不增加计算复杂度的前提下,对原方案进行了改进,使其成为一个安全的双向认证协议,并将其中的关键信息进行了加密保护,改进后的方案克服了原方案存在的安全漏洞,并保留了原方案的所有安全特性,且具有更高的安全性。

关键词: 一次性口令, 身份认证, 中间人攻击, 密码协议

Abstract: Through analysis of the security of the One-time Password scheme mentioned in article[1], this paper finds that this scheme uses a single authentication protocols which can not resist the men-in middle attack. To solve the problem, it proposes an improved scheme—a mutual authentication protocols. The new scheme can conquer the security problem of the original scheme with the same computational complication and hold all security characteristics of the original scheme. So the developed scheme has higher security than the original scheme.

Key words: One-time password, Identity Authentication, Men-in-middle attack, Cryptographic protocols