A more efficient and secure dynamic ID-based remote user authentication scheme

  • Authors:
  • Yan-yan Wang;Jia-yong Liu;Feng-xia Xiao;Jing Dan

  • Affiliations:
  • Inst. of Info. Security, Sichuan Univ., Chengdu 610065, China;Inst. of Info. Security, Sichuan Univ., Chengdu 610065, China;Inst. of Info. Security, Sichuan Univ., Chengdu 610065, China;Inst. of Info. Security, Sichuan Univ., Chengdu 610065, China

  • Venue:
  • Computer Communications
  • Year:
  • 2009

Quantified Score

Hi-index 0.24

Visualization

Abstract

In 2004, Das, Saxena and Gulati proposed a dynamic ID-based remote user authentication scheme. This scheme allows users to change and choose passwords freely, and the server does not maintain any verifier table. It is also secure to against ID-theft, replay attacks and insider attacks and so on. However, research has been done to point that it is completely insecure for its independent of the password. Furthermore, it did not achieve mutual authentication and could not resist impersonate remote server attack. In this paper, an enhanced password authentication scheme which still keeps the merits of the original scheme was presented. Security analysis proved that the improved scheme is more secure and practical.