Abstract:
An Elliptic Curve Cryptography(ECC) based remote user authentication scheme using smart card is proposed, due to the fact that Hwang-Li’s scheme is vulnerable to impersonation attack. One-way function is designed based on Elliptic curve discrete logarithm problem, so that the relationship of password and identity is no longer base and power. The scheme stands up to Shen-Lin-Hwang’s attack and Chan-Chen’s attack, and makes best use of the advantages of ECC.
Key words:
user authentication,
smart card,
Elliptic Curve Cryptography(ECC)
摘要: 针对对Hwang-Li智能卡认证方案的有效攻击,提出一类基于椭圆曲线密码的远程用户智能卡认证方案。利用椭圆曲线上的离散对数问题设计单向陷门函数,使口令和身份不再是简单的基数与幂的关系。避免Shen-Lin-Hwang攻击和Chan-Cheng攻击,充分发挥椭圆曲线密码系统密钥量小、效率高的优势。在同等安全强度下,以较少的存储空间和较小的通信带宽与系统开销实现较高的安全性,可广泛应用于分布式系统。
关键词:
用户认证,
智能卡,
椭圆曲线密码体制
CLC Number:
YU Qing-fei; YANG Xiao-yuan; ZHOU Xuan-wu;. ECC-based Remote User Authentication Scheme Using Smart Card[J]. Computer Engineering, 2009, 35(5): 142-143,.
余卿斐;杨晓元;周宣武;.
基于ECC的远程用户智能卡认证方案
[J]. 计算机工程, 2009, 35(5): 142-143,.