Summary: | 碩士 === 南華大學 === 資訊管理學系 === 105 === Recently, Farash et al. proposed an efficient user authentication and key agreement scheme for heterogeneous wireless sensor network tailored for the Internet of Things environment. By using BAN-logic and AVISPA tools, they confirmed the security properties of the proposed scheme. However, after analyzing, we determined that the scheme could not resist the smart card loss password guessing attack and suffers anonymity breach, which are two of the ten basic requirements in a secure identity authentication using smart card, insisted by Liao et al. Therefore, we modified their method to include the desired security functionality, which are significantly important in a user authentication protocol using smart card.
|