Repository logo
  • English
  • 中文
Log In
Have you forgotten your password?
  1. Home
  2. College of Electrical Engineering and Computer Science / 電機資訊學院
  3. Electrical Engineering / 電機工程學系
  4. Authentication and Key Agreement in Various Communication Environments for User Privacy Protection
 
  • Details

Authentication and Key Agreement in Various Communication Environments for User Privacy Protection

Date Issued
2010
Date
2010
Author(s)
Wang, Ren-Chiun
URI
http://ntur.lib.ntu.edu.tw//handle/246246/254098
Abstract
Due to the rapid growth of numerous security accidents, people become more aware about various network security threats. Many solutions for these network security threats were proposed in which authentication is the first and essential step to identify whether a remote user is authorized or not. After identity authentication, a user can be held accountable and the system can decide to grant her/him a specific access privilege. Moreover, the system can generate a session key to protect future communications. In addition to security, nowadays people pay more attention to their privacy protection when they rely on the Internet to access resources and perform electronic transactions. Users are concerned that their sensitive information might be collected by outsiders and be exposed over the Internet. Unfortunately, most of the existing security solutions did not take this issue into consideration. Today, people can access network resources ubiquitously through wired networks, wireless networks, mobile networks, and vehicle networks etc. From the network architecture point of view, the architectures can be classified into the following types: (1) client/server architecture; (2) multi-server architecture; (3) mobile networks; (4) adhoc networks; and (5) peer-to-peer networks. In this dissertation, our major contributions are that: (1) In client/server architecture, we show the weaknesses of the previous password and smart card-based authentication and key agreement schemes, where the weaknesses are the known-key attack, the smart card loss problem, the exposure of user''s identity, the denial of service attack and the dissatisfaction of the perfect forward secrecy. We then propose our novel schemes to overcome the above weaknesses, to satisfy more merits and to enhance the efficiency. (2) In multi-server architecture, we show the weaknesses of the previous password and smart card-based authentication and key agreement schemes, where the weaknesses are the server spoofing and the impersonation attacks. We then propose our novel scheme to overcome the above weaknesses, to satisfy more merits and to enhance the efficiency. (3) In mobile networks, we show the weaknesses of the previous password and smart card-based and proxy signature-based authentication and key agreement schemes, where the weaknesses are the exposure of mobile user''s identity, the smart card loss problem and the overcharge problem. We then propose our novel schemes to overcome the above weaknesses, to satisfy more merits and to enhance the efficiency. (4) In adhoc networks, we show the weaknesses of the previous smart card-based authentication and key agreement scheme, where the weakness is the impersonation attack. We then propose our novel scheme to overcome the above weakness, to satisfy more merits and to enhance the efficiency. (5) In P2P networks, we propose two novel authentication and key agreement schemes. Comparing with the previous schemes, our schemes can provide more merits and the efficiency with user privacy. Finally, we use the random oracle model to enhance the reliability and precision of security analysis. By the proof of the model and the BAN logic analysis, the claimed security requirements in the proposed schemes are satisfied actually.
Subjects
Authentication
key agreement
privacy
elliptic curve cryptography
smart card
one-way hash function
password
random oracle model
belief logic.
Type
thesis
File(s)
Loading...
Thumbnail Image
Name

ntu-99-D95921018-1.pdf

Size

23.32 KB

Format

Adobe PDF

Checksum

(MD5):635580d769ee949dc469f5238f71af53

臺大位居世界頂尖大學之列,為永久珍藏及向國際展現本校豐碩的研究成果及學術能量,圖書館整合機構典藏(NTUR)與學術庫(AH)不同功能平台,成為臺大學術典藏NTU scholars。期能整合研究能量、促進交流合作、保存學術產出、推廣研究成果。

To permanently archive and promote researcher profiles and scholarly works, Library integrates the services of “NTU Repository” with “Academic Hub” to form NTU Scholars.

總館學科館員 (Main Library)
醫學圖書館學科館員 (Medical Library)
社會科學院辜振甫紀念圖書館學科館員 (Social Sciences Library)

開放取用是從使用者角度提升資訊取用性的社會運動,應用在學術研究上是透過將研究著作公開供使用者自由取閱,以促進學術傳播及因應期刊訂購費用逐年攀升。同時可加速研究發展、提升研究影響力,NTU Scholars即為本校的開放取用典藏(OA Archive)平台。(點選深入了解OA)

  • 請確認所上傳的全文是原創的內容,若該文件包含部分內容的版權非匯入者所有,或由第三方贊助與合作完成,請確認該版權所有者及第三方同意提供此授權。
    Please represent that the submission is your original work, and that you have the right to grant the rights to upload.
  • 若欲上傳已出版的全文電子檔,可使用Open policy finder網站查詢,以確認出版單位之版權政策。
    Please use Open policy finder to find a summary of permissions that are normally given as part of each publisher's copyright transfer agreement.
  • 網站簡介 (Quickstart Guide)
  • 使用手冊 (Instruction Manual)
  • 線上預約服務 (Booking Service)
  • 方案一:臺灣大學計算機中心帳號登入
    (With C&INC Email Account)
  • 方案二:ORCID帳號登入 (With ORCID)
  • 方案一:定期更新ORCID者,以ID匯入 (Search for identifier (ORCID))
  • 方案二:自行建檔 (Default mode Submission)
  • 方案三:學科館員協助匯入 (Email worklist to subject librarians)

Built with DSpace-CRIS software - Extension maintained and optimized by 4Science