Title
Preventing delegation-based mobile authentications from man-in-the-middle attacks
Abstract
In this paper, an approach of mutual authentication and key exchange for mobile access, based on the trust delegation and message authentication code, is developed, and a novel nonce-based authentication approach is presented. The proposed protocols can effectively defend all known attacks to mobile networks including the denial-of-service attacks and man-in-the-middle attacks. In particular, in contrast to some previous work, our design gives users a chance to set a session key according to users' will, and does not require a mobile user to compute useless hash key chains in the face of HLR-online authentication failures or run the initial authentication protocol before HLR-offline authentication. Moreover, our design enjoys both computation efficiency and communication efficiency as compared to known mobile authentication schemes.
Year
DOI
Venue
2012
10.1016/j.csi.2011.10.014
Computer Standards & Interfaces
Keywords
Field
DocType
mobile network,message authentication code,mobile user,mobile authentication scheme,authentication approach,hlr-online authentication failure,man-in-the-middle attack,initial authentication protocol,mutual authentication,mobile access,hlr-offline authentication,delegation-based mobile authentication,mobile communication,security
Lightweight Extensible Authentication Protocol,Mutual authentication,Challenge-Handshake Authentication Protocol,Challenge–response authentication,Computer security,Computer science,Computer network,Data Authentication Algorithm,Authentication protocol,Multi-factor authentication,Cryptographic nonce
Journal
Volume
Issue
ISSN
34
3
0920-5489
Citations 
PageRank 
References 
3
0.45
21
Authors
2
Name
Order
Citations
PageRank
Jian-zhu Lu1383.88
Jipeng Zhou213115.12