arrow
返回

A novel ECC-based provably secure and privacy-preserving multi-factor authentication protocol for cloud computing

delete2022-01-15
delete19
PRE
AI
S
Shivangi Shukla *
S
Sankita J. Patel
DOI:10.1007/s00607-021-01041-6delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
The widespread adoption of cloud computing enables the end-users to leverage convenient sharing, unlimited storage and on-demand access to big data. The extensive combination of servers, networks, users and resources necessitate secure mutual authentication protocol to verify the legitimacy of users for cloud services. Recently, Sahoo et al. and Chen et al. proposed multi-factor mutual authentication and key agreement (MAKA) protocols. However, we identify that Sahoo et al.'s protocol is prone to user linkability, replay and denial-of-service (DoS) attacks. Also, Chen et al.'s protocol is vulnerable to user linkability and known session-specific temporary information (KSSTI) attack. To mitigate these vulnerabilities, we propose a novel elliptic curve cryptography (ECC) based provably secure and privacy-preserving multi-factor authentication protocol for cloud environment. Our protocol delivers user anonymity, unlinkability, perfect forward secrecy, session key security as security and privacy authentication features. The security of our protocol is proved theoretically under Real-Or-Random (ROR) model. We validate the correctness properties of our protocol under Scyther security verification tool. The informal security analysis illustrates that our protocol resists various security attacks such as replay, DoS, KSSTI, user impersonation, server spoofing, password-guessing and privileged insider. Finally, we compare our protocol with Sahoo et al., Chen et al. and other existing relevant protocols regarding security features, communication, and computation overheads. The results illustrate that our protocol exhibits high security with reasonable communication and computational overheads than other existing relevant protocols.
Keyword:
Authentication
Anonymity
Unlinkability
Biometrics
Elliptic curve cryptography
Cloud computing

期刊

C
Computing
IF:
2.8
论文数:
2.3K
被引数:
3.5K

机构

N
national institute of technology (nit system)
学者数:
4.0W
论文数: 3.7W
被引数: 31
引用论文

引用论文

err分享
err收藏
Characterization of Phospholipids in Membrane Vesicles Derived fromPseudomonas aeruginosa
err2014-05-22
err0
errOAAI
errYosuke TASHIRO; Aya INAGAKI; Motoyuki SHIMIZU; Sosaku ICHIKAWA; Naoki TAKAYA; Toshiaki NAKAJIMA-KAMBE; Hiroo UCHIYAMA; Nobuhiko NOMURA
err分享
err收藏
Secure Message Communication Protocol Among Vehicles in Smart City
err2018-05-01
err132
PREAI
errDua, Amit; Kumar, Neeraj; Das, Ashok Kumar; Susilo, Willy
err分享
err收藏
err
IF0
err2024-03-01
err0
PREAI
err
err分享
err收藏
AEGIS autonomous targeting for the Curiosity rover's ChemCam instrument
err2015-10-01
err0
PREAI
errRaymond Francis; Tara Estlin; Daniel Gaines; Benjamin Bornstein; Steven Schaffer; Vandi Verma; Robert Anderson; Michael Burl; Selina Chu; Rebecca Castano; David Thompson; Diana Blaney; Lauren de Flores; Gary Doran; Tony Nelson; Roger Wiens
err分享
err收藏
学者 查看更多内容