Abstract
In the computing environments, remote user authentication is an important part of security. Combining fingerprint verification and smart cards is one of a potential solution for strong remote user authentication. In this paper, we cryptanalyze an efficient fingerprint-based remote user authentication scheme introduced by Yoon and Yoo in 2005, and propose a new scheme improved with regard to security and efficiency. Actually, the Yoon-Yoo scheme is a security improvement on the previous Lin-Lai fingerprint-based verification scheme, while the Lin-Lai scheme is a precedent improvement on the Lee-Ryu-Yoo scheme. However, we have found that the most recent Yoon-Yoo scheme is still vulnerable to various types of impersonation attacks. Our new protocol is resistant to those attacks and more efficient than the previous schemes.
This research was supported by the MIC (Ministry of Information and Communication), Korea, under the ITRC (Information Technology Research Center) support program supervised by the IITA (Institute of Information Technology Assessment).
This is a preview of subscription content, log in via an institution.
Buying options
Tax calculation will be finalised at checkout
Purchases are for personal use only
Learn about institutional subscriptionsPreview
Unable to display preview. Download preview PDF.
References
ElGamal, T.: A Public-Key Cryptosystem And a Signature Scheme Based On Discrete Logarithm. IEEE Transactions on Information Theory IT-31(4), 469–472 (1985)
Jablon, D.: Strong Password-Only Authenticated Key Exchange. Computer Communication Review 26(5), 5–26 (1996)
Lamport, L.: Password Authentication with Insecure Communication. Communication of the ACM 24(11), 770–772 (1981)
Lee, J.K., Ryu, S.R., Yoo, K.Y.: Fingerprint-Based Remote User Authentication Scheme Using Smart Cards. Electronics Letters 38(12), 554–555 (2002)
Lin, C.H., Lai, Y.Y.: A Fingerprint-Based User Authentication Scheme for Multimedia Systems. In: Proceedings of the 2004 IEEE International Conference on Multimedia & Expo. (ICME 2004), Taipei, Taiwan, vol. 2, pp. 935–938 (2004)
van Oorschot, P.C., Wiener, M.J.: On Diffie-Hellman Key Agreement with Short Exponents. In: Maurer, U.M. (ed.) EUROCRYPT 1996. LNCS, vol. 1070, pp. 332–343. Springer, Heidelberg (1996)
Ratha, N.K., Karu, K., Chen, S., Jain, A.K.: A Real-time Matching System for Large Fingerprint Databases. IEEE Transactions on Pattern Analysis and Machine Interlligence 18(8), 799–813 (1996)
Yoon, E.J., Yoo, K.Y.: A New Efficient Fingerprint-Based Remote User Authentication Scheme for Multimedia Systems. In: Khosla, R., Howlett, R.J., Jain, L.C. (eds.) KES 2005. LNCS (LNAI), vol. 3683, pp. 332–338. Springer, Heidelberg (2005)
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2006 Springer-Verlag Berlin Heidelberg
About this paper
Cite this paper
Lee, Y., Kwon, T. (2006). An Improved Fingerprint-Based Remote User Authentication Scheme Using Smart Cards. In: Gavrilova, M.L., et al. Computational Science and Its Applications - ICCSA 2006. ICCSA 2006. Lecture Notes in Computer Science, vol 3981. Springer, Berlin, Heidelberg. https://doi.org/10.1007/11751588_95
Download citation
DOI: https://doi.org/10.1007/11751588_95
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-540-34072-0
Online ISBN: 978-3-540-34074-4
eBook Packages: Computer ScienceComputer Science (R0)