分析并证明了一个基于ID的身份认证方案易受重置攻击,从而导致方案在冒充攻击下是不安全的。针对上述安全漏洞,通过改进原方案的安全策略和身份认证信息,提出一个改进的可有效对抗重置攻击和假冒攻击的身份认证方案。安全性分析表明,在相同的困难性假设下,改进方案的计算量和通信量较原方案明显降低,并且具有更好的安全性和实用性。
An identification scheme based on ID cryptosystem is analyzed and shown to suffer from reset attacks and impersonation attacks. To solve this problem, an improved scheme is proposed, which can withstand the attacks by means of improving the security policy and authentication information. Security analysis showed that the improved scheme greatly reduces computation costs and communication costs under the same difficult assumption, and performs better in security and practical operations.