{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,11]],"date-time":"2024-09-11T14:26:26Z","timestamp":1726064786770},"publisher-location":"Cham","reference-count":40,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783030353292"},{"type":"electronic","value":"9783030353308"}],"license":[{"start":{"date-parts":[[2019,1,1]],"date-time":"2019-01-01T00:00:00Z","timestamp":1546300800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2019]]},"DOI":"10.1007\/978-3-030-35330-8_11","type":"book-chapter","created":{"date-parts":[[2020,1,16]],"date-time":"2020-01-16T07:12:28Z","timestamp":1579158748000},"page":"221-243","update-policy":"http:\/\/dx.doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Torwards Flexible Multi-factor Combination for Authentication Based on Smart-Devices"],"prefix":"10.1007","author":[{"given":"Thomas","family":"Lenz","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Vesna","family":"Krnjic","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2020,1,17]]},"reference":[{"key":"11_CR1","unstructured":"The JavaScript Object Notation (JSON) Data Interchange Format. RFC 7159 (2014). \nhttps:\/\/rfc-editor.org\/rfc\/rfc7159.txt"},{"key":"11_CR2","unstructured":"Bsi tr-03111: Elliptic curve cryptography, version 2.1 (2018)"},{"key":"11_CR3","unstructured":"International Journal of Security: Information technology \u2013 Security techniques \u2013 A framework for identity management \u2013 Part 1: Terminology and concepts. Technical report 24760-1, ISO\/IEC, December 2011"},{"key":"11_CR4","volume-title":"Identity Management: Concepts, Technologies, and Systems","author":"E Bertino","year":"2010","unstructured":"Bertino, E., Takahashi, K.: Identity Management: Concepts, Technologies, and Systems. Artech House Inc., Norwood (2010)"},{"key":"11_CR5","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4419-5906-5","volume-title":"Encyclopedia of Cryptography and Security","year":"2011","unstructured":"van Tilborg, H.C.A., Jajodia, S. (eds.): Encyclopedia of Cryptography and Security. Springer, Boston (2011). \nhttps:\/\/doi.org\/10.1007\/978-1-4419-5906-5"},{"key":"11_CR6","unstructured":"Boyd, C.: Digital multisignatures. In: Cryptography and Coding, pp. 241\u2013246 (1986)"},{"key":"11_CR7","unstructured":"Burr, W.E., et al.: Electronic authentication guideline. Technical report, 800-63-2, National Institute of Standards and Technology (NIST), August 2013. \nhttp:\/\/nvlpubs.nist.gov\/nistpubs\/SpecialPublications\/NIST.SP.800-63-2.pdf"},{"key":"11_CR8","doi-asserted-by":"crossref","unstructured":"Chatzigiannakis, I., Pyrgelis, A., Spirakis, P., Stamatiou, Y.: Elliptic curve based zero knowledge proofs and their applicability on resource constrained devices, July 2011","DOI":"10.1109\/MASS.2011.77"},{"key":"11_CR9","unstructured":"Corella, F., Lewison, K.: Techniques for implementing derived credentials. Technical report, Pomcor Research in Mobile and Web Technology (2012). \nhttps:\/\/pomcor.com\/whitepapers\/DerivedCredentials.pdf"},{"key":"11_CR10","unstructured":"Corella, F., Lewison, K.: An example of a derived credentials architecture. Technical report, Pomcor Research in Mobile and Web Technology (2014). \nhttps:\/\/pomcor.com\/techreports\/DerivedCredentialsExample.pdf"},{"key":"11_CR11","unstructured":"Croft, R.A., Harris, S.P.: Public-key cryptography and reusable shared secrets. In: Cryptography and Coding, pp. 189\u2013201 (1989)"},{"key":"11_CR12","unstructured":"Entrust, E.A.: Mobile derived PIV\/CAC credential - a complete solution for NIST 800-157. Technical report, Entrust Datacard (2014). \nhttps:\/\/www.entrust.com\/wp-content\/uploads\/2014\/10\/Mobile-Derived-Credential-WEB2-Nov15.pdf"},{"key":"11_CR13","unstructured":"European Union: Commission Implementing Regulation (EU) 2015\/1501 of 8 September 2015 on the interoperability framework pursuant to Article 12(8) of Regulation (EU) No. 910\/2014 of the European Parliament and of the Council on electronic identification and trust services for electronic transactions in the internal market. European Union (2015)"},{"key":"11_CR14","doi-asserted-by":"crossref","unstructured":"Ferraiolo, H., Cooper, D., Francomacaro, S., Regenscheid, A., Mohler, J., Gupta, S., Burr, W.: Guidelines for derived personal identity verification (PIV) credentials. Technical report, 800-157, National Institute of Standards and Technology (NIST), December 2014. \nhttp:\/\/nvlpubs.nist.gov\/nistpubs\/SpecialPublications\/NIST.SP.800-157.pdf","DOI":"10.6028\/NIST.SP.800-157"},{"key":"11_CR15","unstructured":"Ferraiolo, H., Regenscheid, A., Cooper, D., Francomacaro, S.: Mobile, PIV, and authentication. Technical report, Draft NISTIR 7981, National Institute of Standards and Technology (NIST), March 2014"},{"key":"11_CR16","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"186","DOI":"10.1007\/3-540-47721-7_12","volume-title":"Advances in Cryptology \u2014 CRYPTO\u2019 86","author":"A Fiat","year":"1987","unstructured":"Fiat, A., Shamir, A.: How to prove yourself: practical solutions to identification and signature problems. In: Odlyzko, A.M. (ed.) CRYPTO 1986. LNCS, vol. 263, pp. 186\u2013194. Springer, Heidelberg (1987). \nhttps:\/\/doi.org\/10.1007\/3-540-47721-7_12"},{"key":"11_CR17","unstructured":"Flor\u00eancio, D., Herley, C., Van Oorschot, P.C.: An administrator\u2019s guide to internet password research. In: Proceedings of the 28th USENIX Conference on Large Installation System Administration, LISA 2014, Berkeley, CA, USA, pp. 35\u201352. USENIX Association (2014). \nhttp:\/\/dl.acm.org\/citation.cfm?id=2717491.2717494"},{"issue":"1","key":"11_CR18","doi-asserted-by":"publisher","first-page":"54","DOI":"10.1006\/inco.2000.2881","volume":"164","author":"R Gennaro","year":"2001","unstructured":"Gennaro, R., Jarecki, S., Krawczyk, H., Rabin, T.: Robust threshold DSS signatures. Inf. Comput. 164(1), 54\u201384 (2001). \nhttps:\/\/doi.org\/10.1006\/inco.2000.2881\n\n. \nhttp:\/\/www.sciencedirect.com\/science\/article\/pii\/S0890540100928815","journal-title":"Inf. Comput."},{"key":"11_CR19","doi-asserted-by":"crossref","unstructured":"Grassi, P.A., Garcia, M.E., Feton, J.L.: Digital identity guidelines. Technical report, 800-63-3, National Institute of Standards and Technology (NIST), June 2017","DOI":"10.6028\/NIST.SP.800-63-3"},{"key":"11_CR20","unstructured":"Grassi, P.A., et al.: Digital identity guidelines - authentication and lifecycle management. Technical report, 800-63b, National Institute of Standards and Technology (NIST), June 2017"},{"key":"11_CR21","doi-asserted-by":"publisher","unstructured":"Hao, F.: Schnorr Non-interactive Zero-Knowledge Proof. RFC 8235, September 2017. \nhttps:\/\/doi.org\/10.17487\/RFC8235\n\n, \nhttps:\/\/rfc-editor.org\/rfc\/rfc8235.txt","DOI":"10.17487\/RFC8235"},{"key":"11_CR22","unstructured":"Haupert, V., M\u00fcller, T.: (In)security of app-based TAN methods in online banking. University of Erlangen-Nuremberg, Germany (2016). \nhttps:\/\/www1.cs.fau.de\/filepool\/projects\/apptan\/apptan-eng.pdf"},{"key":"11_CR23","first-page":"36","volume":"6","author":"S Hayikader","year":"2016","unstructured":"Hayikader, S., Hanis binti Abd Hadi, F.N., Ibrahim, J.: Issues and security measures of mobile banking apps. Int. J. Sci. Res. Publ. 6, 36\u201341 (2016)","journal-title":"Int. J. Sci. Res. Publ."},{"key":"11_CR24","unstructured":"ISO\/IEC: ISO\/IEC 29115. Information technology - Security techniques - Entity authentication assurance framework. International Standard, International Organization for Standardization (2013)"},{"key":"11_CR25","unstructured":"ISO\/IEC: ISO\/IEC COMMITTEE DRAFT 29003. Information technology - Security techniques - Identity proofing. Technical report, International Organization for Standardization (2016)"},{"key":"11_CR26","doi-asserted-by":"publisher","unstructured":"Jones, M.: JSON Web Key (JWK). RFC 7517, May 2015. \nhttps:\/\/doi.org\/10.17487\/RFC7517\n\n. \nhttps:\/\/rfc-editor.org\/rfc\/rfc7517.txt","DOI":"10.17487\/RFC7517"},{"key":"11_CR27","unstructured":"J\u00f8sang, A., Zomai, M.A., Suriadi, S.: Usability and privacy in identity management architectures. In: Proceedings of the Fifth Australasian Symposium on ACSW Frontiers, ACSW 2007, Darlinghurst, Australia, vol. 68, pp. 143\u2013152. Australian Computer Society Inc. (2007). \nhttp:\/\/dl.acm.org\/citation.cfm?id=1274531.1274548"},{"key":"11_CR28","unstructured":"Kerry, C.F., Romine, C.: FIPS PUB 186-4 Federal Information Processing Standards Publication Digital Signature Standard (DSS) (2013)"},{"key":"11_CR29","first-page":"187","volume":"7","author":"JJ Kim","year":"2011","unstructured":"Kim, J.J., Hong, S.P.: A method of risk assessment for multi-factor authentication. JIPS 7, 187\u2013198 (2011)","journal-title":"JIPS"},{"key":"11_CR30","doi-asserted-by":"publisher","unstructured":"Lenz, T., Alber, L.: Towards cross-domain eID by using agile mobile authentication. In: 2017 IEEE Trustcom\/BigDataSE\/ICESS, pp. 570\u2013577, August 2017. \nhttps:\/\/doi.org\/10.1109\/Trustcom\/BigDataSE\/ICESS.2017.286","DOI":"10.1109\/Trustcom\/BigDataSE\/ICESS.2017.286"},{"key":"11_CR31","doi-asserted-by":"crossref","unstructured":"Lenz, T., Krnjic, V.: Agile smart-device based multi-factor authentication for modern identity management systems. In: WEBIST (2018)","DOI":"10.5220\/0007229601130124"},{"key":"11_CR32","doi-asserted-by":"crossref","unstructured":"Lenz, T., Zwattendorfer, B.: A modular and flexible identity management architecture for national eID solutions. In: 11th International Conference on Web Information Systems and Technologies, pp. 321\u2013331 (2015)","DOI":"10.5220\/0005443103210331"},{"key":"11_CR33","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"613","DOI":"10.1007\/978-3-319-63715-0_21","volume-title":"Advances in Cryptology \u2013 CRYPTO 2017","author":"Y Lindell","year":"2017","unstructured":"Lindell, Y.: Fast secure two-party ECDSA signing. In: Katz, J., Shacham, H. (eds.) CRYPTO 2017. LNCS, vol. 10402, pp. 613\u2013644. Springer, Cham (2017). \nhttps:\/\/doi.org\/10.1007\/978-3-319-63715-0_21"},{"issue":"3","key":"11_CR34","doi-asserted-by":"publisher","first-page":"218","DOI":"10.1007\/s10207-004-0041-0","volume":"2","author":"P MacKenzie","year":"2004","unstructured":"MacKenzie, P., Reiter, M.K.: Two-party generation of DSA signatures. Int. J. Inf. Secur. 2(3), 218\u2013239 (2004). \nhttps:\/\/doi.org\/10.1007\/s10207-004-0041-0\n\n. \nhttps:\/\/doi.org\/10.1007\/s10207-004-0","journal-title":"Int. J. Inf. Secur."},{"key":"11_CR35","doi-asserted-by":"publisher","unstructured":"Mohammed, M.M., Elsadig, M.: A multi-layer of multi factors authentication model for online banking services. In: 2013 International Conference on Computing, Electrical and Electronic Engineering (ICCEEE), pp. 220\u2013224, August 2013. \nhttps:\/\/doi.org\/10.1109\/ICCEEE.2013.6633936","DOI":"10.1109\/ICCEEE.2013.6633936"},{"key":"11_CR36","unstructured":"Sarikhani, R.: Language and American social identity, January 2008. \nhttp:\/\/ezinearticles.com\/?Language-and-American-Social-Identity&id=956774"},{"key":"11_CR37","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"239","DOI":"10.1007\/0-387-34805-0_22","volume-title":"Advances in Cryptology \u2014 CRYPTO\u2019 89 Proceedings","author":"CP Schnorr","year":"1990","unstructured":"Schnorr, C.P.: Efficient identification and signatures for smart cards. In: Brassard, G. (ed.) CRYPTO 1989. LNCS, vol. 435, pp. 239\u2013252. Springer, New York (1990). \nhttps:\/\/doi.org\/10.1007\/0-387-34805-0_22"},{"key":"11_CR38","doi-asserted-by":"publisher","unstructured":"Taneski, V., Heri\u010dko, M., Brumen, B.: Password security - no change in 35 years? In: 2014 37th International Convention on Information and Communication Technology, Electronics and Microelectronics (MIPRO), pp. 1360\u20131365, May 2014. \nhttps:\/\/doi.org\/10.1109\/MIPRO.2014.6859779","DOI":"10.1109\/MIPRO.2014.6859779"},{"key":"11_CR39","unstructured":"Turner, S.: The application\/pkcs10 media type. RFC 5967 (2010). \nhttps:\/\/rfc-editor.org\/rfc\/rfc5967.txt"},{"key":"11_CR40","unstructured":"Zwattendorfer, B.: Towards a privacy-preserving federated identity as a service-model (2014)"}],"container-title":["Lecture Notes in Business Information Processing","Web Information Systems and Technologies"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-35330-8_11","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2020,1,16]],"date-time":"2020-01-16T07:19:24Z","timestamp":1579159164000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-030-35330-8_11"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019]]},"ISBN":["9783030353292","9783030353308"],"references-count":40,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-35330-8_11","relation":{},"ISSN":["1865-1348","1865-1356"],"issn-type":[{"type":"print","value":"1865-1348"},{"type":"electronic","value":"1865-1356"}],"subject":[],"published":{"date-parts":[[2019]]},"assertion":[{"value":"17 January 2020","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"WEBIST","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Web Information Systems and Technologies","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Seville","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Spain","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2018","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"18 September 2018","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"20 September 2018","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"14","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"webist2018","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/www.webist.org\/?y=2018","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}