Efficient Multi Server Authentication and Hybrid Authentication Method

Main Article Content

Priya S. Birhade
Chaitanya V. Bhirud
Sangam D. Walke
Jyoti S. Borse

Abstract

Password is used for authentication on many major client-server system, websites etc. Client and a server share a password using Password-authenticated key exchange to authenticate each other and establish a cryptographic key by exchanging generated exchanges. In this scenario, all the passwords are stored in a single server which will authenticate the client. If the server stopped working or compromised, for example, hacking or even insider attack, passwords stored in database will become publicly known. This system proposes that setting where multiple servers which are used to, so that the password can be split in these servers authenticate client and if one server is compromised, the attacker still cannot be able to view the client’s information from the compromised server. This system uses the Advance encryption standard algorithm encryption and for key exchange and some formulae to store the password in multiple server. This system also has the hybrid authentication as another phase to make it more secure and efficient. In the given authentication schema we also use SMS integration API for two step verification.

Article Details

How to Cite
[1]
Priya S. Birhade, Chaitanya V. Bhirud, Sangam D. Walke, and Jyoti S. Borse, “Efficient Multi Server Authentication and Hybrid Authentication Method”, Int. J. Comput. Eng. Res. Trends, vol. 3, no. 4, pp. 165–168, Apr. 2016.
Section
Research Articles

References

S.A.Deshpande, Pawar Vishal, Rane Ashwini, Gite Supriya "Multi Server Password Authentication by Key Exchange Protocol in Secure Manner", International Journal of Advanced Research in Computer and Communication Engineering, Vol. 4, Issue 4, April 2015.

VIGNESH KUMAR K, ANGULAKSHMI T, MANIVANNAN D, SEETHALAKSHMI R, WAMINATHAN P, "PASSWORD BASED TWO SERVER AUTHENTICATION SYSTEM", Journal of Theoretical and Applied Information Technology, vol-39, May 2012.

S.Balaji, Lakshmi.A, V.Revanth, M.Saragini,V.Venkateswara Reddy, ” UTHENTICATION TECHNIQUES FOR ENGENDERING SESSION PASSWORDS WITH COLORS AND TEXT”.

Lekha Deshmukh, Ankita Kathale, Sayali Kulkarni,Prof. Smita Chaudhari,"Password Authentication Using Two Server Key Exchange", International Journal of Engineering and Technical Research (IJETR),Volume-3, March 2015.

M. Abdalla and D. Pointcheval, "Simple Password Based Encrypted Key Exchange Protocols", Proc. Intl Conf. Topics in Cryptology (CT-RSA),2005.

J. Katz, P. MacKenzie, G. Taban, and V. Gligor, "Two Server Password-Only Authenticated Key Exchange,' Proc. Applied Cryptography and Network Security(ACNS)",2005.

Y. Yang, F. Bao, and R.H. Deng, A New Architecture for Authentication and Key Exchange Using Password for Federated Enterprise.

Brainard,A. Jueles, B.S.Kaliski,and M.Szydlo, “A New Two Server Approach for Authentication with Short Secret”.