如果一个远程用户想要从不同的服务器获得网络服务,则必须分别向这些服务器提交注册信息。为解决这个问题,研究者提出了多服务器认证方案。然而大部分多服务器认证方案不能抵抗某些密码攻击或者计算复杂度太高。提出一种高效、安全的多服务器认证与密钥协商协议。由于智能卡和读卡器使得实现这类方案的成本较高,新方案没有使用智能卡。与相关的多服务器认证方案相比,新方案同时具有高效性和安全性,因而更适合在实际环境中应用。
If a remote user wishes to access network services from different servers, he or she has to register with these servers separately. In order to resolve this issue, multi-server authentication scheme had been proposed. However, almost all these schemes were insecure against some cryptographic attack or suffered from high computation costs. This paper proposed an efficient and secure multi-server authentication with key agreement scheme. It eliminated the use of smart card, since smart card and card reads made these schemes costly. Compared with related multi-server authentication schemes, the proposed scheme achieved strong security and enhanced computational efficiency, thus is more suitable for the practical applications.