A 3-LEVEL MULTIFACTOR AUTHENTICATION SCHEME FOR CLOUD COMPUTING

Charanjeet Singh, T. Singh
{"title":"A 3-LEVEL MULTIFACTOR AUTHENTICATION SCHEME FOR CLOUD COMPUTING","authors":"Charanjeet Singh, T. Singh","doi":"10.34218/ijcet.10.1.2019.020","DOIUrl":null,"url":null,"abstract":"The objective of this paper is to propose a secure, user friendly and economical multi-level authentication scheme that uses multiple factors for gaining access to resource on insecure platforms and for financial transactions. The proposed study is based on a premise that when multiple levels and multiple factors are incorporated in an authentication scheme it not only becomes difficult to break but also resistant to different forms of attacks. This work purposes a scheme where authentication process is carried out in three levels using multiple factors and is called 3L-MFA. The scheme also uses Out of Band (OOB) authentication as one of the factors that offers credible security against man-in-the-middle (MIM) attack. The first level uses username password based on double encryption. Second level uses OTP verification based on Out of Band (OOB) authentication using email id and mobile number. Third level involves user’s interaction on graphical screen in terms of predetermined number of clicks on images, buttons and selection of predetermined number of menu items. The security of proposed system depends upon double encryption using SHA-1 and AES128-CBC, out of band authentication using OTP and user interaction on a graphical screen that uses probability combination of various numbers.","PeriodicalId":38492,"journal":{"name":"International Journal of Computer Aided Engineering and Technology","volume":null,"pages":null},"PeriodicalIF":0.0000,"publicationDate":"2019-02-28","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"7","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"International Journal of Computer Aided Engineering and Technology","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.34218/ijcet.10.1.2019.020","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q4","JCRName":"Engineering","Score":null,"Total":0}
引用次数: 7

Abstract

The objective of this paper is to propose a secure, user friendly and economical multi-level authentication scheme that uses multiple factors for gaining access to resource on insecure platforms and for financial transactions. The proposed study is based on a premise that when multiple levels and multiple factors are incorporated in an authentication scheme it not only becomes difficult to break but also resistant to different forms of attacks. This work purposes a scheme where authentication process is carried out in three levels using multiple factors and is called 3L-MFA. The scheme also uses Out of Band (OOB) authentication as one of the factors that offers credible security against man-in-the-middle (MIM) attack. The first level uses username password based on double encryption. Second level uses OTP verification based on Out of Band (OOB) authentication using email id and mobile number. Third level involves user’s interaction on graphical screen in terms of predetermined number of clicks on images, buttons and selection of predetermined number of menu items. The security of proposed system depends upon double encryption using SHA-1 and AES128-CBC, out of band authentication using OTP and user interaction on a graphical screen that uses probability combination of various numbers.
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
一种用于云计算的三级多因素身份验证方案
本文的目标是提出一种安全、用户友好和经济的多级身份验证方案,该方案使用多个因素来访问不安全平台上的资源和金融交易。提出的研究是基于一个前提,即当多个级别和多个因素被纳入一个身份验证方案时,它不仅变得难以破解,而且还能抵抗不同形式的攻击。这项工作的目的是一个方案,其中身份验证过程在使用多个因素的三个级别上进行,称为3L-MFA。该方案还使用带外(OOB)身份验证作为提供可靠安全性以抵御中间人(MIM)攻击的因素之一。第一层使用基于双重加密的用户名密码。第二层使用基于带外(OOB)认证的OTP验证,使用电子邮件id和手机号码。第三个层次是用户在图形屏幕上的交互,包括对图像、按钮的预定点击次数和对预定数量菜单项的选择。系统的安全性依赖于使用SHA-1和AES128-CBC的双重加密、使用OTP的带外认证和使用各种数字的概率组合的图形屏幕上的用户交互。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
CiteScore
1.10
自引率
0.00%
发文量
90
期刊介绍: IJCAET is a journal of new knowledge, reporting research and applications which highlight the opportunities and limitations of computer aided engineering and technology in today''s lifecycle-oriented, knowledge-based era of production. Contributions that deal with both academic research and industrial practices are included. IJCAET is designed to be a multi-disciplinary, fully refereed and international journal.
期刊最新文献
Robotic Motion Control via P300-based Brain-Computer Interface System Comparison of Stereo Matching Algorithms for the Development of Disparity Map A study on media players from an accessibility perspective Plates with functionally graded materials under thermo-mechanical loading: a study Optimisation of the delay in the portfolio construction using GSA
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1