摘要
该文通过对GSM系统安全性的分析,结合双因素认证技术,提出了一种基于GSM手机SIM卡的双因素认证协议,该认证协议使用给SIM卡内植入的种子数与GSM系统时间值进行密码运算,获得消息认证码,使认证服务器可以根据此认证码对用户进行基于SIM卡和种子数的双因素身份认证。该协议的特点在于利用SIM卡和GSM系统的已有资源,通过给SIM植入种子数,使手机实现了双因素认证机制中的时间令牌的功能。最后,对该认证协议的安全性进行了详细的分析论述。
In this paper,a dual -factor authentication protocol based on the SIM card in GSM mobile phone is presented after an analysis of GSM system security and dual -factor authentication.This protocol obtains MAC by performing the cryptographic calculation using the seeds fed in SIM card and GSM system time.The authentication server can authenticate users using this protocol according to this MAC.The main feature lies in that it uses the resources of SIM card and GSM system and implements the function of time token in dual-factor authentication by feeding seeds into SIM card.Finally,the security of this protocol is discussed in details.
出处
《计算机工程与应用》
CSCD
北大核心
2004年第13期147-149,共3页
Computer Engineering and Applications
基金
国家十.五科技攻关计划项目:国家信息安全应用示范工程(编号:2002BA103A04)资助
关键词
双因素认证
消息认证码
GSM系统
SIM卡
dual-factor authentication,Message Authentication Code(MAC),GSM system,SIM card