A novel one-time password mutual authentication scheme on sharing renewed finite random sub-passwords

作者:

Highlights:

摘要

This paper proposes a novel one-time password (OTP) mutual authentication scheme based on challenge/response mechanisms. In the scheme, random sub-passwords and corresponding hashes are shared between a user and a server, respectively. By performing modular algebraic operations on two or more randomly chosen sub-passwords, relatively independent OTPs can be produced in the scheme. The used sub-passwords are renewed according to random permutation functions. With tens of random sub-passwords, we can get enough OTPs that can meet the practical needs. The stores and calculations can be implemented with a microcomputer in the userʼs terminal. At the same time, the scheme can provide sufficient security in ordinary applications.

论文关键词:One-time password,Sub-passwords,Mutual authentication,Random permutation functions

论文评审过程:Received 30 November 2011, Revised 4 June 2012, Accepted 27 June 2012, Available online 29 June 2012.

论文官网地址:https://doi.org/10.1016/j.jcss.2012.06.002