In traditional authentication schemes for access control in mobile pay-TV systems, one-to-one delivery is used, i.e., one authentication message per request is delivered from a head-end system (HES) to a subscriber. The performance of one-to-one delivery for authentication is not satisfactory as it requires frequent operations which results in high bandwidth consumption. To address this issue, one-to-many authentication for access control in mobile pay-TV systems was developed. It requires only one broadcasted authentication message from a HES to subscribers if there are many requests for the same service in a short period of time. However, later it was revealed that the one-to-many authentication scheme was vulnerable to an impersonation attack, i.e., an attacker without any secret key could not only impersonate the mobile set (MS) to the HES but also impersonate the HES to the MS. Then, a new scheme has been recently introduced for secure operations of one-to-many authentication. However, as shown in this paper, the recent work for one-to-many authentication is still vulnerable to the impersonation attack. To mitigate this attack, in this paper, a new scheme for one-tomany authentication using bilinear pairing is proposed that eliminates security weaknesses in the previous work. Results obtained depict that the new improved scheme in this paper provides better performance in terms of computation and communication overheads.
The critical system is an open control system using distributed computing method and possessing increasing levels of autonomy. Due to openness of the network, the system is vulnerable various attacks. To enhance its security, the mutual authentication among the server, the user and the registration is essential. In last several years, many biometrics-based authentication schemes for critical systems based on the client-server environment were proposed for practical applications. However, those schemes are not suitable for critical systems based on the multi-server environment. To guarantee secure communication in critical systems based on the multi-server environment, we propose a new biometricsbased authentication scheme for the multi-server environment. Security analysis and performance analysis show that the proposed scheme avoids security weaknesses in previous schemes while additional cost is small.
scite is a Brooklyn-based organization that helps researchers better discover and understand research articles through Smart Citations–citations that display the context of the citation and describe whether the article provides supporting or contrasting evidence. scite is used by students and researchers from around the world and is funded in part by the National Science Foundation and the National Institute on Drug Abuse of the National Institutes of Health.