提出一种基于嵌入式设备的认证系统,该系统首先通过共享密钥认证初步验证通信双方的身份,并协商实时通信密钥,然后通过指纹识别认证再次验证双方身份.指纹识别认证过程中,指纹信息无需在公共信道中传输,减小了指纹信息受攻击的可能性.理论分析和实验表明,该系统不仅达到了很高指纹识别率,而且具有很高的安全性,能够抵御重放攻击、对服务器指纹模板攻击、以及对客户端模板的攻击.
An embedded authentication system based on shared-key authentication and fingerprint verification is proposed.First,this system authenticates the identities of client and server by shared-key authentication,creates the current communication encrypt key,and then authenticates the identity of them by fingerprint verification.During the process of fingerprint verification,the information of fingerprint is not needed to transmit over the public channel,so the security of fingerprint is increased.Theoretic analysis and experiments show that,this system reach very high authentication rate and security.This system can resist replay attack,server template attack,device template attack,effectively.