• 検索結果がありません。

Study on Method to Prevent a Impersonation on an Asynchronous Problem of SAS-2

N/A
N/A
Protected

Academic year: 2021

シェア "Study on Method to Prevent a Impersonation on an Asynchronous Problem of SAS-2"

Copied!
2
0
0

読み込み中.... (全文を見る)

全文

(1)

要 旨

SAS-2

の同期問題対策時における

なりすまし防止に関する研究

藤田 寛泰

近年, インターネット技術やモバイル端末の普及に伴い,多種多様なWebサービスが登 場している.オンラインショッピングやインターネットバンキングなどのWebサービスは,

ユーザの個人情報を扱うため,認証による不正アクセス対策が必須である.SAS-2は,ワン タイムパスワード認証方式の一種であり,安全かつ高速な認証が可能である.しかし,この プロトコルは,サーバで次回認証情報が更新された後に障害により処理が中断した際にユー -サーバ間で認証情報が不一致となる問題(同期問題)が生じる.この問題に対して認証情 報のバックアップによる同期問題対策方式が提案されたが,その方式はリプレイ攻撃に対し て脆弱である.本研究では,同期問題対策方式におけるなりすましの問題をチャレンジ/ スポンスの導入により解決する.

キーワード 認証,ワンタイムパスワード,SAS-2,同期問題,なりすまし,チャレンジ/ レスポンス

i

(2)

Abstract

Study on Method to Prevent a Impersonation on an Asynchronous Problem of SAS-2

Hiroyasu Fujita

Development of internet communication and spread of mobile devices allow us to take various Web services. Web services such online shoppings and internet bancking deal user’s private information which need to be protected, and authentication is highly required. SAS-2 (Simple And Secure password authentication protocol, ver.2) which is a one-time password authentication method, is able to provide strong authentication.

However, an asynchronous problem of authentication information is occured by some troubles after a server stores next authentication information. Although the problem is resolved by backing up authentication information on the server, this solution lead the SAS-2 protocol to be vulnerable against impersonation attacks. In this paper, a method of resolving the impersonation problem is proposed. It has the mechanism of challenge-response authentication.

key words Authentication, One-time password, SAS-2, Asynchronous problem, Im- personation

ii

参照

関連したドキュメント

In the second computation, we use a fine equidistant grid within the isotropic borehole region and an optimal grid coarsening in the x direction in the outer, anisotropic,

This technique allows us to obtain the space regularity of the unique strict solution for our problem.. Little H¨ older space; sum of linear operators;

Kilbas; Conditions of the existence of a classical solution of a Cauchy type problem for the diffusion equation with the Riemann-Liouville partial derivative, Differential Equations,

Turmetov; On solvability of a boundary value problem for a nonhomogeneous biharmonic equation with a boundary operator of a fractional order, Acta Mathematica Scientia.. Bjorstad;

A Darboux type problem for a model hyperbolic equation of the third order with multiple characteristics is considered in the case of two independent variables.. In the class

Yin, “Global existence and blow-up phenomena for an integrable two-component Camassa-Holm shallow water system,” Journal of Differential Equations, vol.. Yin, “Global weak

This paper presents an investigation into the mechanics of this specific problem and develops an analytical approach that accounts for the effects of geometrical and material data on

In order to solve this problem we in- troduce generalized uniformly continuous solution operators and use them to obtain the unique solution on a certain Colombeau space1. In