Relatório
Puf-based Mutual Multifactor Entity And Transaction Authentication For Secure Banking
Registro en:
Lightweight Cryptography For Security And Privacy. SPRINGER INT PUBLISHING AG, n. 9542, p. 77 - 96.
0302-9743
WOS:000373441300005
10.1007/978-3-319-29078-2_5
Autor
Resende
ACD; Mochetti
K; Aranha
DF
Institución
Resumen
In this work we propose a protocol combining a Physical Unclonable Function (PUF) with Password-based Authenticated Key Exchange (PAKE). The resulting protocol provides mutual multifactor authentication between client and server and establishes a session key between the authenticated parties, important features that were not found simultaneously in the literature of PUF-based authentication. The combination can be adapted to support a panic password which allows the client to notify the server in case of emergency. Moreover, a novel protocol for two-factor transaction authentication is proposed. This ensures that only parties authenticated in the current session can realize valid bank transactions. 9542
77 96 4th International Workshop on Lightweight Cryptography for Security and Privacy (LightSec) SEP 10-11, 2015 Bochum, GERMANY