摘要: | 隨著科技的日新月異,物聯網(Internet of Things, IoT)廣泛應用於各行各業,增加了人們日常生活中的便利性,使得無線感測網路(Wireless Sensor Network, WSN)結合了無線網路、感測器、資料紀錄器等資訊技術,被廣泛應用於各種領域。然而,部份感測器會傳輸敏感性資訊並佈署在不安全的環境中,因此無線感測網路安全的相關研究越來越受重視。
本研究探討了智慧卡及無線感測網路認證協定,採歸納演繹之研究方法。在文獻中分析了2021年,Zhu等人以輕量匿名性無線感測網路的三因素認證協定(Zhu et al., 2021)及Haq等人用於多伺服器架構的高效認證密鑰協定(Haq et al., 2021)具有相當實用性。然而,我們發現Zhu等人及Haq等人的認證協定中,仍存在著部份安全漏洞。因此,本文利用安全性分析指出上述兩協定所具有的弱點,並以Zhu等人的協定為基礎改良提出更具安全性且同時具有輕量且實用性的無線感測網路認證協定,再以安全性分析證明其安全性以建立有效的安全通訊機制,防止攻擊者的惡意攻擊,並期望於未來研究中能以Haq等人協定為基礎,提出適用於多伺服器架構的認證協定。
With the rapid advancement of technology, the Internet of Things (IoT) is widely used in various industries, increasing convenience in people's daily lives. Wireless Sensor Networks (WSN), which combine wireless networks, sensors, and data loggers, have been widely applied in various fields. However, some sensors transmit sensitive information and are deployed in insecure environments, making the security of wireless sensor networks increasingly important.
This proposal explores the authentication protocols of smart cards and wireless sensor networks using an inductive-deductive research method. In the literature, Zhu et al.’s A Light and Anonymous Three-Factor Authentication Protocol for Wireless Sensor Networks (Zhu et al., 2021) and Haq et al.’s An efficient hash-based authenticated key agreement scheme for multi-server architecture resilient to key compromise impersonation (Haq et al., 2021), which are both quite practical. However, we found that there are still some security vulnerabilities in the authentication protocols proposed by Zhu et al. and Haq et al. Therefore, this proposal proposes to improve the vulnerabilities of both protocols and develop a more secure and practical wireless sensor network authentication protocol based on Zhu et al.'s protocol. The security of the proposed protocol is analyzed to establish an effective security communication mechanism to prevent malicious attacks by attackers. Furthermore, in future research, we plan to develop a multi-server authentication protocol based on the Haq et al. protocol. |