Comment on ‘ElGamal cryptosystem-based secure authentication system for cloud-based IoT applications’


Irshad A., Chaudhry S. A.

IET Networks, cilt.10, sa.5, ss.244-245, 2021 (Scopus) identifier

  • Yayın Türü: Makale / Tam Makale
  • Cilt numarası: 10 Sayı: 5
  • Basım Tarihi: 2021
  • Doi Numarası: 10.1049/ntw2.12014
  • Dergi Adı: IET Networks
  • Derginin Tarandığı İndeksler: Scopus
  • Sayfa Sayıları: ss.244-245
  • İstanbul Gelişim Üniversitesi Adresli: Evet

Özet

© 2021 The Authors. IET Networks published by John Wiley & Sons Ltd on behalf of The Institution of Engineering and Technology.This comment is presented to identify the drawbacks in a recently demonstrated scheme by Maitra et al., SAS-Cloud: doi:10.1049/iet-net.2019.0004, which adopted an ElGamal cryptosystem-based technique for biometric authentication in cloud-based IoT applications. In this protocol, the authors claim that their scheme provides mutual authentication. However, it is demonstrated in this article that the protocol merely supports unilateral authentication, which may result in clogging attack on the server's end. This is because the latter is unable to verify the authentication request in absolute terms, which might lead to resource clogging as well as denial of service attack affecting its Quality of Service (QoS).