New efficient user identification and key distribution scheme providing enhanced security
Apart from user identification and key distribution, it is very useful for the login process to achieve user anonymity. Recently, Wu and Hsu proposed an efficient user identification scheme with key distribution while preserving user anonymity by extending an earlier work of Lee and Chang. We however find out that the Wu and Hsu scheme has a serious weakness, which can be exploited by the service provider to learn the secret token of the user who requests services from the service provider. We further propose a scheme to overcome this limitation while attaining the same set of objectives as the previous works. Performance analyses have shown that efficiency in terms of both computation and communication is not sacrificed in our scheme.
User identification, Authentication, Key distribution, Login, Anonymity
Information Security and Trust
Computers & Security
YANG, Yanjiang; WANG, Shuhong; BAO, Feng; WANG, Jie; and DENG, Robert H..
New efficient user identification and key distribution scheme providing enhanced security. (2004). Computers & Security. 23, (8), 697-704. Research Collection School Of Information Systems.
Available at: http://ink.library.smu.edu.sg/sis_research/1072