RMIT University
Browse

Token-Based Biometric Enhanced Key Derivation for Authentication Over Wireless Networks

journal contribution
posted on 2024-11-02, 23:23 authored by Hui Cui, Xuechao Yang, Wencheng Yang, Baodong Qin, Xun YiXun Yi
A biometric authenticated key derivation (BAKD) scheme is an architecture allowing users to derive keys from their biometric characteristics with the help of the server via a wireless network. Traditionally, the user registers his/her biometric feature with the server, and the server keeps a record for the user to recover the key locked by the biometric data. In this case, when the server is compromised, an attacker is able to launch exhaustive attacks to learn the user's biometric input. With such a concern in mind, we introduce a notion called Biometric Enhanced Key Derivation (BEKD) to prevent brute-force attacks. In a BEKD scheme, the server does not store any biometric related information for the user. It is the user who locally stores tokens to recover the cryptographic key. An attacker who steals tokens from the user cannot launch exhaustive attacks to confirm the user's biometric distribution. In addition, the BEKD scheme protects users' privacy in that the server could not distinguish a user's biometric input from a token. We define security requirements for a BEKD scheme, present a concrete BEKD construction, and analyse its security. We also implement the proposed basic BEKD scheme to evaluate its performance in practice.

History

Related Materials

  1. 1.
    DOI - Is published in 10.1109/TNSE.2023.3246439
  2. 2.
    ISSN - Is published in 23274697

Journal

IEEE Transactions on Network Science and Engineering

Volume

10

Issue

4

Start page

1

End page

11

Total pages

11

Publisher

IEEE

Place published

United States

Language

English

Copyright

© 2023 IEEE

Former Identifier

2006123142

Esploro creation date

2023-07-12

Usage metrics

    Scholarly Works

    Exports

    RefWorks
    BibTeX
    Ref. manager
    Endnote
    DataCite
    NLM
    DC