A password authentication scheme over insecure networks

  • Authors:
  • I-En Liao;Cheng-Chi Lee;Min-Shiang Hwang

  • Affiliations:
  • Department of Computer Science, National Chung Hsing University, 250 Kuo Kuang Road, 402 Taichung, Taiwan;Department of Computer Science, National Chung Hsing University, 250 Kuo Kuang Road, 402 Taichung, Taiwan and Department of Computer & Communication Engineering, Asia University, No. 500, Lioufeng ...;Department of Management Information Systems, National Chung Hsing University, 250 Kuo Kuang Road, 402 Taichung, Taiwan

  • Venue:
  • Journal of Computer and System Sciences
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

Authentication ensures that system's resources are not obtained fraudulently by illegal users. Password authentication is one of the simplest and the most convenient authentication mechanisms over insecure networks. The problem of password authentication in an insecure networks is present in many application areas. Since computing resources have grown tremendously, password authentication is more frequently required in areas such as computer networks, wireless networks, remote login, operation systems, and database management systems. Many schemes based on cryptography have been proposed to solve the problem. However, previous schemes are vulnerable to various attacks and are neither efficient, nor user friendly. Users cannot choose and change their passwords at will. In this paper, we propose a new password authentication scheme to achieve the all proposed requirements. Furthermore, our scheme can support the Diffie-Hellman key agreement protocol over insecure networks. Users and the system can use the agreed session key to encrypt/decrypt their communicated messages using the symmetric cryptosystem.