A Forward-Secure Authentication Scheme for Global Mobility Network

Document Type : Research Paper

Authors

1 Islamic Azad University

2 Department of Electrical and Computer Engineering, Science and Research Branch, Islamic Azad University

Abstract

Services presented on mobile devices have been prompted with development of Internet of Things (IoT). The Global Mobility Network (GLOMONET) is a network which provides access to the Internet for mobile users from everywhere, and it is important to provide security and authentication of mobile devices at communications. A secure authentication protocol named as secure mobile authentication scheme for global mobility network (SMASG) in 2022 was presented by Ryu et al. However, we show that SMASG has some vulnerabilities that threaten its security. First, it is shown that it is not forward secure in a way that if long-term secret keys of entities are exposed, session keys are obtained. Second, it is not secure against known session-specific temporary information attack and subsequently it is vulnerable against mobile user impersonation attack. In this research, these vulnerabilities are presented and a modified authentication scheme named as modified-SMASG (m-SMASG) is proposed. Then, informal and formal security analysis using BAN Logic are given to show that the proposal is secure, and also its performance analysis is presented in the comparison section to show that it has a reasonable communication and computation overhead compared to the baseline papers. It should be highlighted that m-SMASG is the first proposal satisfies perfect forward secrecy in GLOMONET, while computation and communication costs are increased.

Keywords