计算机应用 ›› 2015, Vol. 35 ›› Issue (10): 2877-2882.DOI: 10.11772/j.issn.1001-9081.2015.10.2877

• 信息安全 • 上一篇    下一篇

可证安全的面向无线传感器网络的双因素认证方案

陈蕾1,2, 魏福山1,2, 马传贵1,2   

  1. 1. 信息工程大学, 郑州 450001;
    2. 数学工程与先进计算国家重点实验室, 郑州 450001
  • 收稿日期:2015-03-02 修回日期:2015-04-01 出版日期:2015-10-10 发布日期:2015-10-14
  • 通讯作者: 陈蕾(1990-),女,湖北襄阳人,硕士研究生,CCF会员,主要研究方向:安全协议,chenleixy0730@163.com
  • 作者简介:魏福山(1983-),男,甘肃武威人,讲师,博士,主要研究方向:安全协议;马传贵(1962-),男,山东菏泽人,教授,博士生导师,博士,CCF会员,主要研究方向:密码协议、无线通信。
  • 基金资助:
    国家自然科学基金资助项目(61379150,61309016);河南省自然科学基金资助项目(122102210426);信息保障技术重点实验室开放课题资助项目(KJ-13-02);"十二五"密码发展基金资助项目(MMJJ201201005)。

Provably-secure two-factor authentication scheme for wireless sensor network

CHEN Lei1,2, WEI Fushan1,2, MA Chuangui1,2   

  1. 1. Information Engineering University, Zhengzhou Henan 450001, China;
    2. State Key Laboratory of Mathematical Engineering and Advanced Computing, Zhengzhou Henan 450001, China
  • Received:2015-03-02 Revised:2015-04-01 Online:2015-10-10 Published:2015-10-14

摘要: 随着无线传感器网络的快速发展,对外部用户的身份进行确认已成为获取传感器网络中实时数据所要解决的关键问题。基于Nam提出的首个广泛适用于面向无线传感器网络的双因素认证方案的安全模型,设计了一个新的可证安全的用户认证密钥协商方案。该方案基于椭圆曲线密码体制,达到用户、网关节点及传感器节点之间的双向认证,满足匿名性并建立会话密钥,最后基于ECCDH困难性假设证明了新方案的安全性。与Nam提出的方案相比,在满足安全性的同时,将参与者的计算效率达到最优,更符合资源受限环境及现实应用。

关键词: 无线传感器网络, 用户认证, 口令, 智能卡, 可证明安全

Abstract: With the development of Wireless Sensor Network (WSN), user authentication in WSN is a critical security issue due to their unattended and hostile deployment in the field. To improve the security of user authentication, a new provably-secure two-factor authentication key exchange scheme based on Nam's first security model was proposed. The proposed scheme was based on elliptic curve cryptography, and it achieved authentication security and user anonymity. The safety of the improved protocol was proved based on ECCDH in the random oracle model. Performance analysis demonstrates that compared to Nam's schemes, the proposal is more efficient, and it is more suited to wireless sensor networks environments.

Key words: Wireless Sensor Network (WSN), user authentication, password, smart-card, provably-secure

中图分类号: