An improved SIP authentication scheme based on server-oriented biometric verification
Loading...
Date
Journal Title
Journal ISSN
Volume Title
Publisher
Springer Link
Abstract
The Session Initiation Protocol (SIP) provides a way to control the wired and wireless Voice over Internet Protocol-based communication over an insecure channel. The SIP protocol is not secure due to relying on an intrinsically open text-based communication, which further stresses the strengthening of SIP authentication protocols. Many solutions have been put forward in the last few years to design the secure and efficient SIP authentication protocols for multimedia. Recently, Zhang et al. proposed a SIP authentication protocol with an enhanced feature that enables the server authenticate the users on the basis of biometric verification. However, after a careful observation, one can witness few limitations regarding privileged insider attack, session specific temporary attack, De-synchronization attack; denial-of-service attack, inefficient password modification and lack forward secrecy compromise. We have proposed a secure scheme countering the identified flaws of Zhang et al. and other contemporary schemes. We also demonstrate the security strength of proposed scheme by employing the formal security analysis under BAN logic.
Keywords
Citation
Irshad, A., Kumari, S., Li, X., Wu, F., Chaudhry, S. A., & Arshad, H. (2017). An improved SIP authentication scheme based on server-oriented biometric verification. Wireless Personal Communications, 97(2), 2145-2166.
