Abstract:
The existing remote user authentication schemes for multi-server environment are not resilient to defend against various security attacks and does not provide user anonymity. Therefore, a remote user authentication scheme for multi-server environment based on biometric and chaotic maps is proposed to realize authentication between the user and multi-server. The user and multi-server can authenticate each other and share a session key for subsequent secure communication. The proposed scheme is proved to be secure using the BAN logic. Additionally, analysis results show that the proposed protocol can resist masquerade attack, offline password guessing attack, stolen smart card attack, etc. Finally, comparing the scheme with other relevant schemes and the comparative results show that our scheme is efficient in terms of computation cost, communication cost, it can be more suitable for practical application.