Research On Two-Factor Identity Authentication System Based On Smart Phone And User Password

Lin Hou,Laiwen Wei,Chen Wang,Andi Wang,Jian Xu
DOI: https://doi.org/10.1007/978-3-030-00018-9_63
2018-01-01
Abstract:This paper studied the traditional two-factor authentication system, integrated public-key cryptography, Bluetooth communication, two-dimensional codes and other technologies, designed and realized a new two-factor identity authentication system based on smart phone and user password, which includes three main entities: mobile authentication client, browser extension, and web server. The mobile phone was used to replace the traditional physical authentication devices. Not only does it reduce the cost of manufacturers, but also is easier for users to use. The system is transparent to the people that they do not need to learn new knowledge before using the authentication system. Besides, compared to the traditional two-factor authentication, the system has reached the same security. Our system can resist the man-in-the-middle attacks, phishing attacks, replay attacks and others effectively. The system that we present is reliable and easy to manage, moreover, it has the good portability and the advantages above have important significance to the improvement of the identity authentication.
What problem does this paper attempt to address?