Title: Enhanced authentication protocol for session initiation protocol using smart card

Authors: Wenxia Zhu; Jianhua Chen; Debiao He

Addresses: School of Mathematics and Statistics, Wuhan University, Wuhan 430072, China ' School of Mathematics and Statistics, Wuhan University, Wuhan 430072, China ' School of Mathematics and Statistics, Wuhan University, Wuhan 430072, China

Abstract: Providing a security and efficiently key agreement for session initiation protocol (SIP) is so important to protect communication sessions on the internet. An authentication should be finished before a user utilises the SIP service provided by a server. However, there are some security problems with SIP authentication. Recently, Tu et al. improved Zhang et al.'s authenticated key agreement protocol. They also claimed that their protocol could be resistant to kinds of attacks. In our paper, we show that their protocol is susceptible to the server spoofing attack, user impersonation attack. We also proposed an enhanced protocol which can be more secure and flexible here.

Keywords: session initiation protocol; SIP; elliptic curve; key agreement; security; mutual authentication; smart cards; server spoofing attacks; user impersonation attacks.

DOI: 10.1504/IJESDF.2015.072176

International Journal of Electronic Security and Digital Forensics, 2015 Vol.7 No.4, pp.330 - 342

Received: 06 Nov 2014
Accepted: 24 Apr 2015

Published online: 02 Oct 2015 *

Full-text access for editors Access for subscribers Purchase this article Comment on this article