首页 | 官方网站   微博 | 高级检索  
     

基于区块链技术的生物特征和口令双因子跨域认证方案
引用本文:周致成,李立新,郭松,李作辉.基于区块链技术的生物特征和口令双因子跨域认证方案[J].计算机应用,2018,38(6):1620-1627.
作者姓名:周致成  李立新  郭松  李作辉
作者单位:信息工程大学, 郑州 450001
基金项目:信息工程大学科研基金资助项目(2016609903)。
摘    要:为解决传统跨域认证方式不多且方案复杂的问题,提出了基于区块链技术的生物特征和口令双因子跨域认证方案。首先,使用模糊提取技术提取生物特征的随机密钥参与认证,解决了生物特征泄露导致永久不可用的问题;其次,利用不易篡改的区块链存储生物特征公开信息,解决了模糊提取技术易受主动攻击威胁的问题;最后,基于区块链的分布式存储功能与联盟链架构,实现了用户在本地和异地环境下的双因子跨域认证。安全性分析和效率分析的结果表明,在安全性方面,所提方案具有抗中间人攻击、抗重放攻击等安全属性;在效率与可用性方面,该方案效率适中,用户无需携带智能卡,系统的可扩展性强。

关 键 词:跨域认证  区块链技术  模糊提取技术  生物特征  动态口令  
收稿时间:2017-12-11
修稿时间:2018-01-30

Biometric and password two-factor cross domain authentication scheme based on blockchain technology
ZHOU Zhicheng,LI Lixin,GUO Song,LI Zuohui.Biometric and password two-factor cross domain authentication scheme based on blockchain technology[J].journal of Computer Applications,2018,38(6):1620-1627.
Authors:ZHOU Zhicheng  LI Lixin  GUO Song  LI Zuohui
Affiliation:Information Engineering University, Zhengzhou Henan 450001, China
Abstract:The traditional cross domain authentication schemes are few and complex. In order to solve the problems, a new biometric and password two-factor cross domain authentication scheme based on blockchain technology was proposed. Firstly, the fuzzy extraction technology was used to extract the random key of biometrics for participation authentication, and the problem of permanent unavailability caused by the biometric leakage was solved. Secondly, the untampered blockchain was used to store the public information of biometrics, and the threat of being vulnerable to active attacks for the fuzzy extraction technology was solved. Finally, based on the distributed storage function and consortium blockchain architecture of blockchain, the two-factor cross domain authentication of user in local and remote environment was realized. The results of security analysis and efficiency analysis show that, in terms of security, the proposed scheme has the security properties of anti-man-in-the-middle attack and anti-replay attack; in terms of efficiency and feasibility, the efficiency of the proposed scheme is moderate, users do not need to carry smart cards, and the expandability of system is strong.
Keywords:cross domain authentication                                                                                                                        blockchain technology                                                                                                                        fuzzy extraction technology                                                                                                                        biometric                                                                                                                        dynamic password
点击此处可从《计算机应用》浏览原始摘要信息
点击此处可从《计算机应用》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司    京ICP备09084417号-23

京公网安备 11010802026262号