Title: Enhanced authentication protocol for session initiation protocol using smart card
Authors: Wenxia Zhu; Jianhua Chen; Debiao He
Addresses: School of Mathematics and Statistics, Wuhan University, Wuhan 430072, China ' School of Mathematics and Statistics, Wuhan University, Wuhan 430072, China ' School of Mathematics and Statistics, Wuhan University, Wuhan 430072, China
Abstract: Providing a security and efficiently key agreement for session initiation protocol (SIP) is so important to protect communication sessions on the internet. An authentication should be finished before a user utilises the SIP service provided by a server. However, there are some security problems with SIP authentication. Recently, Tu et al. improved Zhang et al.'s authenticated key agreement protocol. They also claimed that their protocol could be resistant to kinds of attacks. In our paper, we show that their protocol is susceptible to the server spoofing attack, user impersonation attack. We also proposed an enhanced protocol which can be more secure and flexible here.
Keywords: session initiation protocol; SIP; elliptic curve; key agreement; security; mutual authentication; smart cards; server spoofing attacks; user impersonation attacks.
DOI: 10.1504/IJESDF.2015.072176
International Journal of Electronic Security and Digital Forensics, 2015 Vol.7 No.4, pp.330 - 342
Received: 06 Nov 2014
Accepted: 24 Apr 2015
Published online: 02 Oct 2015 *