Smart card based password authentication system is the most popular and easiest authentication mechanism to allow a legal user login into a remote server. Recently, Liaw et. al. have proposed a smart card based remote user authentication scheme which provides some additional functionalities compare to conventional mutual authentication scheme. However, it was found that the scheme is vulnerable to several attacks. In this paper, we have provided some enhancement on Liaw et. al.'s scheme to provide resistance against it's security issues. Our scheme is able to provide resistance to all the possible attacks while providing enough functionality. The proposed enhancement is based on smart card, user password, random generated nonce and one way hash function.
Published in:
Computer Sciences and Convergence Information Technology (ICCIT), 2011 6th International Conference on
Date of Conference: Nov. 29 2011-Dec. 1 2011