English  |  正體中文  |  简体中文  |  全文筆數/總筆數 : 46833/50693 (92%)
造訪人次 : 11868515      線上人數 : 578
RC Version 6.0 © Powered By DSPACE, MIT. Enhanced by NTU Library IR team.
搜尋範圍 查詢小技巧:
  • 您可在西文檢索詞彙前後加上"雙引號",以獲取較精準的檢索結果
  • 若欲以作者姓名搜尋,建議至進階搜尋限定作者欄位,可獲得較完整資料
  • 進階搜尋
    主頁登入上傳說明關於CCUR管理 到手機版


    請使用永久網址來引用或連結此文件: https://irlib.pccu.edu.tw/handle/987654321/37406


    題名: 一個基於智慧卡的使用者遠端認證機制改良之研究
    An Improvement of Remote User Authentication Scheme with Smart Card
    作者: 楊仁銘
    貢獻者: 資訊管理學系
    關鍵詞: 智慧卡
    認證
    離線猜密碼攻擊
    偽裝攻擊
    生物特徵
    smart card
    authentication
    off-line password guessing attack
    impersonation attack
    biometrics feature
    日期: 2017
    上傳時間: 2017-08-16 09:26:35 (UTC+8)
    摘要: 隨著科技的日新月異,新興的科技不斷地影響我們的生活,例如智慧卡廣泛的應用於各種通訊機制中。然而智慧卡的認證機制之中,仍存在許多惡意的攻擊,如猜密碼攻擊、偽裝攻擊、重送攻擊以及阻斷服務攻擊等。為了防止諸多攻擊, Mishra等人於2015年針對Jiang以及Li等人的機制提出弱點分析及分別改進機制,但其中仍存在有弱點使其遭受阻斷服務、離線猜密碼等攻擊。
    本研究首先介紹Mishra等人所提出基於密碼認證與金鑰協商認證機制中,仍存在的安全性問題,如內部攻擊及換卡機制等問題。接著再介紹Mishra等人另一個基於密碼與生物特徵的雙因子認證機制,本研究發現該機制雖然能改善Li等人所提的機制,但仍有無匿名性以及換卡機制弱點等安全性問題。本研究利用探討Mishra等人兩項機制的安全性分析,說明現有機制的問題。以改善問題為基礎,提出新的改良機制及安全性分析,並與其他機制進行安全性及效能分析,證明本研究所提出新的機制具有更佳的安全性。
    With the rapid development of science and technology, it has gradually changed our life. For example, the smart card has been widely used and becomes an essential item in daily life. However, there are many malicious attacks, such as password guessing, impersonation, replay and denial of service. Therefore, the secure authentication schemes become very important and there are many researcher proposed their schemes. In 2015, Mishra et al. proposed an authentication scheme to improve the weaknesses of Li et al.’s scheme, but there are still with some weaknesses and vulnerabilities like guessing and denial of service attack.
    In this study, we firstly introduce Mishra et al.’s scheme based on the password authentication and key agreement, and security problems, such as insider attacks and the weaknesses of smart card revocation phase. Secondly, we introduce another Mishra et al.’s scheme two-factor authentication mechanism based on password and biometrics identification. Although this scheme can improve the scheme of Li et al. and Jiang et al., there are still with some security problems such as the weaknesses of smart card revocation phase and user anonymity. Finally based on indicated we propose a new improved authentication scheme with security and performance analysis that proved the new scheme has better security.
    顯示於類別:[資訊管理學系暨資訊管理研究所 ] 博碩士論文

    文件中的檔案:

    檔案 描述 大小格式瀏覽次數
    index.html0KbHTML243檢視/開啟


    在CCUR中所有的資料項目都受到原著作權保護.


    DSpace Software Copyright © 2002-2004  MIT &  Hewlett-Packard  /   Enhanced by   NTU Library IR team Copyright ©   - 回饋