Cryptanalysis and improvement of TAKASIP protocol
TANG Hong-bin,LIU Xin-song
DOI: https://doi.org/10.3724/SP.J.1087.2012.00468
2012-01-01
Journal of Computer Applications
Abstract:Session Initiation Protocol(SIP) provides authentication and session key agreement to ensure the security of the successive session.In 2010,Yoon et al.(YOON E-J,YOO K-Y.A three-factor authenticated key agreement scheme for SIP on elliptic curves.NSS '10: 4th International Conference on Network and System Security.Piscataway: IEEE,2010: 334-339.) proposed a three-factor authenticated key agreement scheme named TAKA_SIP for SIP.However,the scheme is vulnerable to insider attack,server-spoofing attack,off-line password attack,and losing token attack.Moreover,it does not provide mutual authentication.To overcome these flaws of TAKA_SIP,a new three-factor authentication scheme named ETAKA_SIP based on Elliptic Curve Cryptosystem(ECC) was proposed.ETAKA_SIP,on the basis of elliptic curve discrete logarithm problem,provides higher security than TAKA_SIP.It needs 7 elliptic curve scalar multiplication operations,1 additional operation and up to 6 Hash operations,and of high efficiency.