UPM Institutional Repository

Design and implementation of multi factor mechanism for secure authentication system


Citation

Hussein, Khalid Waleed and Mohd Sani, Nor Fazlida and Mahmod, Ramlan and Abdullah @ Selimun, Mohd Taufik (2013) Design and implementation of multi factor mechanism for secure authentication system. International Journal of Computer Science and Information Security, 11 (7). pp. 31-37. ISSN 1947-5500

Abstract

A secure network depends in part on user authentication and regrettably the authentication systems currently in use are not completely safe. However, the user is not the only party that needs to be authenticated to ensure the security of transactions on the Internet. Existing OTP mechanism cannot guarantee reuse of user's account by an adversary, re-use stolen user's device which is used in the process of authentication, and non-repudiation. This paper proposed mechanism of multi factor for secure electronic authentication. It intends to authenticate both of user and mobile device and guarantee non-repudiation, integrity of OTP from obtaining it by an adversary. The proposal can guarantee the user’s credentials by ensuring the user’s authenticity of identity and checking that the mobile device is in the right hands before sending the OTP to the user. This would require each user having a unique phone number and a unique mobile device (unique International Mobile Equipment Identity (IMEI)), in addition to an ID card number. By leveraging existing communication infrastructures, the mechanism would be able to guarantee the safety of electronic authentication, and to confirm that it demonstrates excellence in non-repudiation, authenticate user and mobile device which are used in the process of authentication, certification strength and also in comparison and analysis through experimenting with existing OTP mechanisms.


Download File

[img]
Preview
PDF (Abstract)
Design and implementation of multi factor mechanism for secure authentication system.pdf

Download (49kB) | Preview

Additional Metadata

Item Type: Article
Divisions: Faculty of Computer Science and Information Technology
Publisher: IJCSIS
Keywords: Security; Non-repudiation; Multi factor authentication; IMEI
Depositing User: Nurul Ainie Mokhtar
Date Deposited: 14 Sep 2016 04:23
Last Modified: 14 Sep 2016 04:23
URI: http://psasir.upm.edu.my/id/eprint/30636
Statistic Details: View Download Statistic

Actions (login required)

View Item View Item