• 文献检索
  • 文档翻译
  • 深度研究
  • 学术资讯
  • Suppr Zotero 插件Zotero 插件
  • 邀请有礼
  • 套餐&价格
  • 历史记录
应用&插件
Suppr Zotero 插件Zotero 插件浏览器插件Mac 客户端Windows 客户端微信小程序
定价
高级版会员购买积分包购买API积分包
服务
文献检索文档翻译深度研究API 文档MCP 服务
关于我们
关于 Suppr公司介绍联系我们用户协议隐私条款
关注我们

Suppr 超能文献

核心技术专利:CN118964589B侵权必究
粤ICP备2023148730 号-1Suppr @ 2026

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验

一种基于多因素认证的高性能数据备份方案。

A Higher Performance Data Backup Scheme Based on Multi-Factor Authentication.

作者信息

Wu Lingfeng, Wen Yunhua, Yi Jinghai

机构信息

School of Computer Science and Technology, Donghua University, Shanghai 201620, China.

State Key Laboratory of Information Security, Institute of Information Engineering, Chinese Academy of Sciences, Beijing 100093, China.

出版信息

Entropy (Basel). 2024 Aug 5;26(8):667. doi: 10.3390/e26080667.

DOI:10.3390/e26080667
PMID:39202137
原文链接:https://pmc.ncbi.nlm.nih.gov/articles/PMC11353856/
Abstract

Remote data backup technology avoids the risk of data loss and tampering, and has higher security compared to local data backup solutions. However, the data transmission channel for remote data backup is not secure, and the backup server cannot be fully trusted, so users usually encrypt the data before uploading it to the remote server. As a result, how to protect this encryption key is crucial. We design a User-Centric Design (UCD) data backup scheme based on multi-factor authentication to protect this encryption key. Our scheme utilizes a secret sharing scheme to divide the encryption key into three parts, which are stored in the laptop, the smart card, and the server. The encryption key can be easily reconstructed from any two parts with user's private information password, identity and biometrics. As long as the biometrics has enough entropy, our scheme can resist replay attacks, impersonation user attacks, impersonation server attacks, malicious servers and offline password guessing attacks.

摘要

远程数据备份技术避免了数据丢失和篡改的风险,与本地数据备份解决方案相比具有更高的安全性。然而,远程数据备份的数据传输通道并不安全,备份服务器也不能完全信任,因此用户通常在将数据上传到远程服务器之前对其进行加密。因此,如何保护此加密密钥至关重要。我们设计了一种基于多因素认证的以用户为中心的设计(UCD)数据备份方案来保护此加密密钥。我们的方案利用秘密共享方案将加密密钥分为三部分,分别存储在笔记本电脑、智能卡和服务器中。通过用户的私人信息密码、身份和生物特征,加密密钥可以很容易地从任意两部分重建。只要生物特征具有足够的熵,我们的方案就可以抵御重放攻击、冒充用户攻击、冒充服务器攻击、恶意服务器和离线密码猜测攻击。

https://cdn.ncbi.nlm.nih.gov/pmc/blobs/f54b/11353856/7d99328ca6af/entropy-26-00667-g001.jpg
https://cdn.ncbi.nlm.nih.gov/pmc/blobs/f54b/11353856/7d99328ca6af/entropy-26-00667-g001.jpg
https://cdn.ncbi.nlm.nih.gov/pmc/blobs/f54b/11353856/7d99328ca6af/entropy-26-00667-g001.jpg

相似文献

1
A Higher Performance Data Backup Scheme Based on Multi-Factor Authentication.一种基于多因素认证的高性能数据备份方案。
Entropy (Basel). 2024 Aug 5;26(8):667. doi: 10.3390/e26080667.
2
Security analysis and enhancements of an effective biometric-based remote user authentication scheme using smart cards.基于智能卡的有效生物特征远程用户认证方案的安全性分析与增强
J Biomed Biotechnol. 2012;2012:519723. doi: 10.1155/2012/519723. Epub 2012 Jul 31.
3
A secure biometrics-based authentication key exchange protocol for multi-server TMIS using ECC.基于椭圆曲线密码的 TMIS 多服务器安全生物认证密钥交换协议
Comput Methods Programs Biomed. 2018 Oct;164:101-109. doi: 10.1016/j.cmpb.2018.07.008. Epub 2018 Jul 18.
4
Security enhanced multi-factor biometric authentication scheme using bio-hash function.使用生物哈希函数的增强安全性多因素生物特征认证方案。
PLoS One. 2017 May 1;12(5):e0176250. doi: 10.1371/journal.pone.0176250. eCollection 2017.
5
A robust uniqueness-and-anonymity-preserving remote user authentication scheme for connected health care.一种用于连接式医疗保健的强大的保持唯一性和匿名性的远程用户认证方案。
J Med Syst. 2013 Dec;37(6):9980. doi: 10.1007/s10916-013-9980-1. Epub 2013 Oct 23.
6
Robust Multiple Servers Architecture Based Authentication Scheme Preserving Anonymity.基于健壮多服务器架构的匿名认证方案
Sensors (Basel). 2019 Jul 17;19(14):3144. doi: 10.3390/s19143144.
7
A secure and efficient uniqueness-and-anonymity-preserving remote user authentication scheme for connected health care.一种用于连接式医疗保健的安全高效的保持唯一性和匿名性的远程用户认证方案。
J Med Syst. 2013 Jun;37(3):9948. doi: 10.1007/s10916-013-9948-1. Epub 2013 May 10.
8
A Multi-Server Two-Factor Authentication Scheme with Un-Traceability Using Elliptic Curve Cryptography.基于椭圆曲线密码学的使用不可追踪的多服务器双因素认证方案。
Sensors (Basel). 2018 Jul 23;18(7):2394. doi: 10.3390/s18072394.
9
An efficient dynamic ID-based remote user authentication scheme using self-certified public keys for multi-server environments.一种基于自签名公钥的高效动态 ID 基远程用户认证方案,适用于多服务器环境。
PLoS One. 2018 Oct 9;13(10):e0202657. doi: 10.1371/journal.pone.0202657. eCollection 2018.
10
An Improvement of Robust Biometrics-Based Authentication and Key Agreement Scheme for Multi-Server Environments Using Smart Cards.一种基于稳健生物特征的多服务器环境下使用智能卡的认证与密钥协商方案的改进
PLoS One. 2015 Dec 28;10(12):e0145263. doi: 10.1371/journal.pone.0145263. eCollection 2015.