首页 | 官方网站   微博 | 高级检索  
     

一种分层无线传感网的匿名双因素用户认证协议
引用本文:房卫东,张武雄,潘涛,高智伟,倪业鹏. 一种分层无线传感网的匿名双因素用户认证协议[J]. 四川大学学报(工程科学版), 2020, 52(3): 168-177
作者姓名:房卫东  张武雄  潘涛  高智伟  倪业鹏
作者单位:中国科学院 上海微系统与信息技术研究所 无线传感网与通信重点实验室,中国科学院 上海微系统与信息技术研究所 无线传感网与通信重点实验室,神华信息技术有限公司,中国科学院 上海微系统与信息技术研究所 无线传感网与通信重点实验室,中国科学院 上海微系统与信息技术研究所 无线传感网与通信重点实验室
基金项目:国家自然科学(61571303,61571004),上海市自然科学(17ZR1429100),上海科技创新行动计划项目(17DZ2281600,17DZ2292000),重大科技专项(2018ZX03001031)
摘    要:用户认证协议(User Authentication Protocol,UAP)可以确保访问用户的合法性与传感器节点感知信息的接入安全,是保障无线传感网(Wireless Sensor Network,WSN)应用安全的一项重要机制。现有用户认证协议(Fan协议)存在各种安全缺陷,易遭受多种网络安全攻击,尤其是无法有效抵御节点妥协攻击、口令猜测攻击、内部特权攻击等,也不支持用户的匿名性,无法保障用户的隐私。针对这些安全挑战,提出了一种分层无线传感网的匿名双因素用户认证协议(Anonymous Two-factor User Authentication Protocol,AT-UAP),该协议在注册阶段以哈希隐藏方式传输口令,提高了口令传输的安全性;增大网关节点秘密参数与用户的相关性,实现了秘密参数的唯一性;在认证阶段,增大会话密钥与系统时间和用户的关联性,实现会话密钥的唯一性和动态性;引入口令更新机制,用户可以在不联系簇头节点的情况下,自由更新口令,保障了口令的新鲜性。逻辑分析与仿真结果表明,与Fan协议相比,AT-UAP协议在仅增加少量计算开销的基础上,不仅可以防御节点妥协攻击、口令猜测攻击和内部特权攻击,而且实现了用户匿名性;与Nam协议、He-Kumar协议、以及Mir协议相比,AT-UAP协议采用了哈希函数、级联操作和异或操作等轻量级安全操作,减少了传感器节点计算开销,优化了传感器节点向网关节点的注册流程,综合性能优于上面提到的三种用户认证协议。因此,AT-UAP协议不但适用于资源受限的传感器节点,而且显著提高了无线传感网安全性。

关 键 词:无线传感网   用户认证协议   双因子   匿名性.
收稿时间:2019-09-05
修稿时间:2020-04-13

An Anonymous Two-factor User Authentication Protocol for Hierarchical Wireless Sensor Network
FANG Weidong,ZHANG Wuxiong,PAN Tao,GAO Zhiwei,NI Yepeng. An Anonymous Two-factor User Authentication Protocol for Hierarchical Wireless Sensor Network[J]. Journal of Sichuan University (Engineering Science Edition), 2020, 52(3): 168-177
Authors:FANG Weidong  ZHANG Wuxiong  PAN Tao  GAO Zhiwei  NI Yepeng
Affiliation:Key Lab of Wireless Sensor Network and Communication,Shanghai Inst of Micro-system and Info Technol,Chinese Academy of Sci,Key Lab of Wireless Sensor Network and Communication,Shanghai Inst of Micro-system and Info Technol,Chinese Academy of Sci,Shenhua Info Technol Co,LTD,Key Lab of Wireless Sensor Network and Communication,Shanghai Inst of Micro-system and Info Technol,Chinese Academy of Sci,Key Lab of Wireless Sensor Network and Communication,Shanghai Inst of Micro-system and Info Technol,Chinese Academy of Sci
Abstract:User Authentication Protocol (UAP) is an important scheme to guarantee the legality of admitted-users and access security of sensing information for sensor node, and to enhance the application security for Wireless Sensor Network (WSN). These are various security flaws in many proposed UAPs (i.e. Fan protocol), which are vulnerable to diverse cyber security attacks. In particular, they could not effectively defend against the node compromised attack, the password guessing attack, the privileged-insider attack, and so forth. In addition, the user"s anonymity is not supported so that the user privacy cannot be preserved. For these security challenges, an Anonymous Two-factor User Authentication Protocol (AT-UAP) for hierarchical WSN was proposed. In the registration phase of AT-UAP, the password was transmitted via hiding Hash to enhance the transmission security, and the correlation between the secret parameters of gateway node and the users was increased to achieve the uniqueness of the secret parameter. Furthermore, in the authentication phase of AT-UAP, the association between
Keywords:wireless sensor network (WSN)   user authentication protocol (UAP)   two-factors   anonymity
点击此处可从《四川大学学报(工程科学版)》浏览原始摘要信息
点击此处可从《四川大学学报(工程科学版)》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司    京ICP备09084417号-23

京公网安备 11010802026262号