A one time password generation algorithm suitable for HOTP

  • Jian Wei Liu*
  • , Hui Li
  • , Jian Feng Ma
  • *Corresponding author for this work

Research output: Contribution to journalArticlepeer-review

Abstract

A one time password algorithm HTOP.C is proposed based on HMAC SHA-1 and a dynamic truncating function. The algorithm has a fast computing speed and high security, and it is easy to implement by using Token or IC card hardware. Therefore, the algorithm is suitable for the HTOP authentication framework. Besides, three basic conditions are proposed for the token-based authentication protocol, and an authentication protocol based on counter synchronization is designed. At the server side, the protocol sets up a maximum trying number to prevent the brute-force attack, and a look-ahead parameter to realize counter resynchronization. Finally, the security of the protocol is analyzed. Results show that the protocol can resist normal attacks, such as brute-force attack and interception/replay attack effectively, and is highly secure.

Original languageEnglish
Pages (from-to)650-654
Number of pages5
JournalXi'an Dianzi Keji Daxue Xuebao/Journal of Xidian University
Volume33
Issue number4
StatePublished - Aug 2006

Keywords

  • Authentication protocol
  • Hash function
  • One time password

Fingerprint

Dive into the research topics of 'A one time password generation algorithm suitable for HOTP'. Together they form a unique fingerprint.

Cite this