The analysis of methods and authentication protocols in computer networks
Abstract
This article is devoted to the analysis of the main methods and protocols of user authentication. During the research, the principle of operation of authentication methods and protocols and their key features, scope and degree of information security when using one or another method and protocol are analyzed. In computer systems for information transferring, at the identification stage, user provides his personal electronic data for verification. At the stage of authentication, personal user’s electronic data are verified with certain protocols. Ultimately, as a result of successful verification of user's electronic data the user gets access rights to a particular resource. Electronic systems of information transmission also have more sophisticated methods of authentication and authorization built on various protocols. After the investigation of advantages and disadvantages of the considered user authentication protocols in computer networks, the further directions of research and ways of solving the problems that arose during the analysis are determined
Keywords
identification, authentication, authorization, computer systems, confidential data, protection of information
References
- Domarev, D. V., & Domarev, V. V. (2016). Method of informative-analytical support of information security management based on the system approach. Ukrainian Information Security Research Journal, 16. https://doi.org/10.18372/2410-7840.16.6508
- Domarev, D. V., & Domarev, V. V. (2019). Method of information security management in banking institutions using ISMS "Matrix". Ukrainian Scientific Journal of Information Security, 19. https://doi.org/10.18372/2225-5036.19.4706
- Domarev, D. V., Domarev, V. V., & Prokopenko, S. D. (2015). Method of information system’s security level estimation using ISMS "Matrix". Ukrainian Information Security Research Journal, 15. https://doi.org/10.18372/2410-7840.15.4223
- Halevi, S., & Krawczyk, H. (1999). Public-key cryptography and password protocols. Cryptology ePrint Archive. https://eprint.iacr.org/1999/004
- Hodo, E., Bellekens, X., Hamilton, A., Dubouilh, P., Iorkyase, E., Tachtatzis, C., & Atkinson, R. (2017). Threat analysis of IoT networks using artificial neural network intrusion detection system. arXiv. https://arxiv.org/abs/1704.02286
- Ioannou, L. M., & Mosca, M. (2011). Unconditionally-secure and reusable public-key authentication. Cryptology ePrint Archive. https://eprint.iacr.org/2011/2887
- Kozhedub, Y. (2018). Organizational paradigm for providing information security. Information Technology and Security, 6(1), 153133. https://doi.org/10.20535/2411-1031.2018.6.1.153133
- Kozina, G. L., & Moldovyan, N. A. (2008). Collective digital signature protocols on elliptic and hyperelliptic curves. Radio Electronics, Computer Science, Control, 1, 25. https://doi.org/10.15588/1607-3274-2008-1-25
- Lo, W. W., Layeghy, S., Sarhan, M., Gallagher, M., & Portmann, M. (2021). E-GraphSAGE: A graph neural network based intrusion detection system for IoT. arXiv. https://arxiv.org/abs/2103.16329
- Moldovyan, A. A., Moldovyan, N. A., & Rad, B. Y. (2001). Cryptography. Lan'. ISBN: 5-8114-0025-2
- Northcutt, S., & Novak, D. (2001). Intrusion detection: Network security beyond the firewall. New Riders Publishing.
- Smith, R. E. (2002). Authentication: From passwords to public keys. Addison-Wesley. ISBN-13: 978-0201615999
- Stollings, W. (2002). Network security essentials: Applications and standards. Prentice Hall. ISBN-13: 978-0201615999
- Zhou, Y., Cheng, G., Jiang, S., & Dai, M. (2019). Building an efficient intrusion detection system based on feature selection and ensemble classifier. arXiv. https://arxiv.org/abs/1904.01352