
计算机科学 ›› 2018, Vol. 45 ›› Issue (6): 111-116.doi: 10.11896/j.issn.1002-137X.2018.06.019

信息安全


殷秋实, 陈建华   

  1. 武汉大学数学与统计学院 武汉430072
  • 收稿日期:2017-04-12 出版日期:2018-06-15 发布日期:2018-07-24
  • 作者简介:殷秋实(1993-),男,硕士生,主要研究方向为密码与信息安全,E-mail:qiusy_2017@163.com;陈建华(1963-),男,教授,博士生导师,主要研究方向为数论与密码,E-mail:chenjh_ecc@163.com(通信作者)

Improved Identity Authentication Protocol Based on Elliptic Curve Cryptographyin Multi-server Environment

YIN Qiu-shi, CHEN Jian-hua   

  1. School of Mathematics & Statistics,Wuhan University,Wuhan 430072,China
  • Received:2017-04-12 Online:2018-06-15 Published:2018-07-24

摘要: 传统的身份认证协议大部分都是采用用户名和口令的模式在基于数学问题难解的情况下衍生出来的。这类协议往往依赖于口令的复杂性、随机数发生器的性能以及较大的计算开销来确保通信的安全性,因而效率较低且实用性不强。为了成功规避上述问题,在引入生物因子及模糊提取器的基础上提出了一个基于椭圆曲线密码改进的身份认证协议,并用Burrows-Abadi-Needham (BAN逻辑)形式化地完成了双方密钥认证性的验证,随后又对其进行了安全性分析并与其他相关协议进行了性能比较。实验结果表明,此协议具备更高的安全性和更强的实用性。

关键词: BAN逻辑, 多服务器环境, 模糊提取器, 身份认证, 椭圆曲线密码

Abstract: Based on the model of user’s name and password,most of the traditional identity authentication protocols are derived from the mathematical difficult problems.They often rely on the complexity of password,the performance of random generator and large computational cost to ensure the security of the communication,so they are lack of high efficiency and practicality.In order to avoid above problems successfully,based on the introduction of biological factors and fuzzy extractor,this paper proposed an improved identity authentication protocol based on elliptic curve cryptography and verified key authentication formally in both sides through Burrows-Abadi-Needham (short for BAN),and then carried out security analysis.Compared with other related protocols in performance,the proposed scheme is more secure and practical.

Key words: BAN logic, Elliptic curve cryptography, Fuzzy extractor, Identity authentication, Multi-server environment


  • TP309
Full text



