Skip to main content

Password-Based User Authentication Protocol for Mobile Environment

  • Conference paper

Part of the book series: Lecture Notes in Computer Science ((LNCCN,volume 3961))

Abstract

As mobile technologies evolve, mobile services tend to continuously expand and diversify. Therefore, developing security services appropriate for mobile environments is indispensable. This paper concentrates on how password-based user authentication protocols are applied to mobile environment, proposing the Password-based Authentication using Group Servers (PAGS) protocol. This protocol is able to provide authentication services relevant to mobile equipments to reduce complicated client processes in existing protocols. PAGS has the same security as protocols in [4,9], however this protocol is more appropriate for mobile equipments.

This work was supported by the Ministry of Information & Communications, Korea, under the Information Technology Research Center (ITRC) Support Program.

This is a preview of subscription content, log in via an institution.

Buying options

Chapter
USD   29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD   84.99
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD   109.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Learn about institutional subscriptions

Preview

Unable to display preview. Download preview PDF.

Unable to display preview. Download preview PDF.

References

  1. Bellovin, S.M., Merritt, M.: Encrypted Key Exchange: Password-Based Protocols Secure Against Dictionary Attacks. In: Proceedings of the I.E.E.E. Symposium on Research in Security and Privacy, Oakland (May 1992)

    Google Scholar 

  2. Bellovin, S., Merritt, M.: Augmented encrypted key exchange: a password-based protocol secure against dictionary attacks and password-file compromise. In: ACM Conference on Computer and Communications Security (1993)

    Google Scholar 

  3. Jablon, D.: Strong password-only authenticated key exchange. ACM Computer Communications Review (October 1996)

    Google Scholar 

  4. Ford, W., Kaliski, B.: Server-Assisted Generation of a Strong Secret from a Password. In: Proc. 9th International Workshops on Enabling Technologies: Infrastructure for Collaborative Enterprises, IEEE, June 14-16 (2000)

    Google Scholar 

  5. Bellare, M., Pointcheval, D., Rogaway, P.: Authenticated Key Exchange Secure against Dictionary Attacks. In: Preneel, B. (ed.) EUROCRYPT 2000. LNCS, vol. 1807, p. 139. Springer, Heidelberg (2000)

    Chapter  Google Scholar 

  6. Gong, L., Lomas, T.M.A., Needham, R.M., Saltzer, J.H.: Protecting Poorly Chosen Secrets from Guessing Attacks. IEEE Journal on Selected Areas in Communications 11(5), 648–656 (1993)

    Article  Google Scholar 

  7. Perlman, R., Kaufman, C.: Secure Password-Based Protocol for Downloading a Private Key. In: Proc. 01999 Network and Distributed System Security Symposium, Internet Society (January 1999)

    Google Scholar 

  8. van Oorschot, P.C., Wiener, M.J.: On Diffie-Hellman Key Agreement with Short Exponents. In: Maurer, U.M. (ed.) EUROCRYPT 1996. van Oorschot, P.C., Wiener, M.J, vol. 1070, pp. 332–343. Springer, Heidelberg (1996)

    Google Scholar 

  9. Jablon, D.P.: Password Authentication Using Multiple Servers. In: The Cryptographers’ Track at RSA Conference 2001, San Francisco, CA, USA, April 8-12 (2001)

    Google Scholar 

  10. Mackenzie, P., Shrimpton, T., Jakobsson, M.: Threshold Password-Authenticated Key Exchange. In: Yung, M. (ed.) CRYPTO 2002. LNCS, vol. 2442, pp. 385–400. Springer, Heidelberg (2002)

    Chapter  Google Scholar 

  11. Mackenzie, P., Patel, S., Swaminathan, R.: Password-authenticated key exchange based on RSA. In: Okamoto, T. (ed.) ASIACRYPT 2000. LNCS, vol. 1976, p. 599. Springer, Heidelberg (2000)

    Chapter  Google Scholar 

  12. Boyko, V., MacKenzie, P., Patel, S.: Provably Secure Password-Authenticated Key Exchange Using Diffie-Hellman. In: Preneel, B. (ed.) EUROCRYPT 2000. LNCS, vol. 1807, Springer, Heidelberg (2000)

    Google Scholar 

  13. Di Raimondo, M., Gennaro, R.: Provably Secure Threshold Password-Authenticated Key Exchange Extended Abstract. In: Biham, E. (ed.) EUROCRYPT 2003. LNCS, vol. 2656, pp. 507–523. Springer, Heidelberg (2003)

    Chapter  Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2006 Springer-Verlag Berlin Heidelberg

About this paper

Cite this paper

Moon, SW., Kim, YG., Moon, CJ., Baik, DK. (2006). Password-Based User Authentication Protocol for Mobile Environment. In: Chong, I., Kawahara, K. (eds) Information Networking. Advances in Data Communications and Wireless Networks. ICOIN 2006. Lecture Notes in Computer Science, vol 3961. Springer, Berlin, Heidelberg. https://doi.org/10.1007/11919568_74

Download citation

  • DOI: https://doi.org/10.1007/11919568_74

  • Publisher Name: Springer, Berlin, Heidelberg

  • Print ISBN: 978-3-540-48563-6

  • Online ISBN: 978-3-540-48564-3

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics