Dynamic Password Authentication Based on Smart Card and Fingerprint

ZHANG Jin-ying,ZHENG Yu,LU Xian-hui,HE Da-ke
2005-01-01
Abstract:A password-based remote user authentication scheme was proposed by Lin and Lai, but there were some vulnerabilities in time-stamp and user ID.So an improved scheme based on challenge-response was presented,adopting diplex authentication technologies,fingerprint and smart card.It could achieve mutual authentication and avoid replay attack and masquerade attack.The random factor was generated by the mutual parties to guarantee the authentication fairness.Moreover,user's fingerprint needed not be transmitted in the authentication process to protect user's privacy.
What problem does this paper attempt to address?