Related Experiment Videos
An Enhanced Biometric Based Authentication with Key-Agreement Protocol for Multi-Server Architecture Based on
Alavalapati Goutham Reddy1, Ashok Kumar Das2, Vanga Odelu3
1School of Computer Science and Engineering, Kyungpook National University, Daegu, Korea.
Plos One
|May 11, 2016
Summary
This study enhances biometric authentication for multi-server systems. The new protocol improves security and efficiency, addressing vulnerabilities found in previous methods for secure user authentication.
Area of Science:
- Computer Science
- Cybersecurity
- Cryptography
Background:
- Biometric authentication is crucial for multi-server systems due to wireless technology advancements.
- Existing protocols face security challenges like impersonation and lack of anonymity.
- Lu et al.'s protocol, while robust, has identified vulnerabilities.
Purpose of the Study:
- To propose an enhanced biometric authentication and key-agreement protocol for multi-server architectures.
- To address the security flaws in Lu et al.'s existing protocol.
- To improve user anonymity, forward secrecy, and resistance to attacks.
Main Methods:
- Development of an enhanced protocol using elliptic curve cryptography and smart cards.
- Formal security verification using Burrows-Abadi-Needham (BAN) logic for mutual authentication.
- Automated security validation with the AVISPA tool to test against various attacks.
Main Results:
- The proposed protocol achieves mutual authentication and enhances user anonymity.
- It demonstrates resilience against server/user impersonation and man-in-the-middle attacks.
- Formal and performance analyses confirm its robustness and efficiency over existing protocols.
Conclusions:
- The enhanced protocol offers superior security and efficiency for multi-server biometric authentication.
- It effectively mitigates identified vulnerabilities in prior protocols.
- The protocol is suitable for modern wireless environments requiring secure authentication.