Strong Personal Authentication Scheme Using Mobile Technology

Josep Prieto

Abstract


Security is a major concern in computer networks. Authentication is possibly the most important factor since achieving privacy and integrity may make no sense without a guarantee of receiver identity. Cryptographic strong authentication protocols are well known but the real problem is to protect secret information, such as shared or private keys, used in these protocols. In regard to the problem of smart card availability (devices and readers), we propose a mobile architecture using more deployed technologies such as cellular phones or PDAs and wireless personal area networks (WPAN) like Bluetooth. The mobile device (cellular phones or PDAs) acts as a smart card, storing private information and performing cryptographic operations while WPANs replace smart card readers. The risk of insecure wireless networks inclusion is studied and solved using suitable authentication protocols.

Keywords


Authentication; mobile devices; wireless networks; Bluetooth; cryptography

Full Text:

PDF


Creative Commons
The texts published in this publication are – unless otherwise indicated – covered by the Creative Commons Attribution-Non commercial-No derivative works 3.0 Spain licence. They may be copied, distributed and broadcast provided that the author, the publication and the institutions that publish them (IN3 Working Paper Series, IN3 and UOC) are cited. Commercial use and derivative works are not permitted. The full licence can be consulted on http://creativecommons.org/licenses/by-nc-nd/3.0/deed.en.