Security enhancement of an IC-card-based remote login mechanism

  • Authors:
  • Ting-Fang Cheng;Jung-San Lee;Chin-Chen Chang

  • Affiliations:
  • Department of Information Engineering and Computer Science, Feng Chia University, 100 Wenha Road, Seatwen, Taichung 40724, Taiwan, ROC;Department of Computer Science and Information Engineering, National Chung Cheng University, Chiayi 621, Taiwan, ROC;Department of Information Engineering and Computer Science, Feng Chia University, 100 Wenha Road, Seatwen, Taichung 40724, Taiwan, ROC and Department of Computer Science and Information Engineerin ...

  • Venue:
  • Computer Networks: The International Journal of Computer and Telecommunications Networking
  • Year:
  • 2007

Quantified Score

Hi-index 0.00

Visualization

Abstract

Wang et al. presented a remote password authentication scheme using IC (Integrated Circuit) cards in 2004. Unfortunately, we discovered that their scheme is unable to withstand the forgery attack. We consequently propose in this paper a novel version to resist this kind of attacks. Furthermore, our scheme can also provide mutual authentication between a remote server and login users. The security of our scheme is based on the public one-way hash function. What is more, the timestamp mechanism is applied in our scheme to protect such potential attacks in the case that an intruder may replay a previously intercepted login request to access the remote server.