{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,11]],"date-time":"2025-11-11T15:50:17Z","timestamp":1762876217344,"version":"build-2065373602"},"reference-count":45,"publisher":"MDPI AG","issue":"19","license":[{"start":{"date-parts":[[2020,9,30]],"date-time":"2020-09-30T00:00:00Z","timestamp":1601424000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Sensors"],"abstract":"<jats:p>The Internet of Things (IoT) is currently the most popular field in communication and information techniques. However, designing a secure and reliable authentication scheme for IoT-based architectures is still a challenge. In 2019, Zhou et al. showed that schemes pro-posed by Amin et al. and Maitra et al. are vulnerable to off-line guessing attacks, user tracking attacks, etc. On this basis, a lightweight authentication scheme based on IoT is proposed, and an authentication scheme based on IoT is proposed, which can resist various types of attacks and realize key security features such as user audit, mutual authentication, and session security. However, we found weaknesses in the scheme upon evaluation. Hence, we proposed an enhanced scheme based on their mechanism, thus achieving the security requirements and resisting well-known attacks.<\/jats:p>","DOI":"10.3390\/s20195604","type":"journal-article","created":{"date-parts":[[2020,9,30]],"date-time":"2020-09-30T09:41:01Z","timestamp":1601458861000},"page":"5604","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":16,"title":["A Secure IoT-Based Authentication System in Cloud Computing Environment"],"prefix":"10.3390","volume":"20","author":[{"given":"Hsiao-Ling","family":"Wu","sequence":"first","affiliation":[{"name":"Department of Information Engineering and Computer Science, Feng Chia University, Taichung 40724, Taiwan"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Chin-Chen","family":"Chang","sequence":"additional","affiliation":[{"name":"Department of Information Engineering and Computer Science, Feng Chia University, Taichung 40724, Taiwan"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yao-Zhu","family":"Zheng","sequence":"additional","affiliation":[{"name":"Department of Computer Science, National Tsing Hua University, Hsinchu 30013, Taiwan"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2967-9956","authenticated-orcid":false,"given":"Long-Sheng","family":"Chen","sequence":"additional","affiliation":[{"name":"Department of Information Management, Chaoyang University of Technology, Taichung 41349, Taiwan"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7054-903X","authenticated-orcid":false,"given":"Chih-Cheng","family":"Chen","sequence":"additional","affiliation":[{"name":"Information and Engineering College, Jimei University, Fujian 361021, China"},{"name":"Department of Industrial Engineering and Management, Chaoyang University of Technology, Taichung 413310, Taiwan"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"1968","published-online":{"date-parts":[[2020,9,30]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","first-page":"2481","DOI":"10.1007\/s11276-014-0761-7","article-title":"Security of the Internet of Things: Perspectives and challenges","volume":"20","author":"Jing","year":"2014","journal-title":"Wirel. Netw."},{"key":"ref_2","doi-asserted-by":"crossref","first-page":"2787","DOI":"10.1016\/j.comnet.2010.05.010","article-title":"The Internet of Things: A survey","volume":"54","author":"Atzori","year":"2010","journal-title":"Comput. Netw."},{"key":"ref_3","doi-asserted-by":"crossref","first-page":"234","DOI":"10.1002\/sat.1279","article-title":"A secure authentication with key agreement scheme using ECC for satellite communication systems","volume":"37","author":"Qi","year":"2019","journal-title":"Int. J. Satell. Commun. Netw."},{"key":"ref_4","doi-asserted-by":"crossref","first-page":"2710","DOI":"10.1016\/j.adhoc.2013.05.003","article-title":"DTLS based security and two-way authentication for the Internet of Things","volume":"11","author":"Kothmayr","year":"2013","journal-title":"Ad Hoc Netw."},{"key":"ref_5","doi-asserted-by":"crossref","unstructured":"Pranata, I., Athauda, R., and Skinner, G. (2012, January 27\u201329). Securing and governing access in ad-hoc networks of Internet of Things. Proceedings of the IASTED International Conference on Engineering and Applied Science, Colombo, Sri Lanka.","DOI":"10.2316\/P.2012.785-070"},{"key":"ref_6","doi-asserted-by":"crossref","first-page":"119","DOI":"10.14419\/ijet.v7i2.26.14364","article-title":"A new authentication scheme with elliptical curve cryptography for Internet of Things (IoT) environments","volume":"7","author":"Durairaj","year":"2018","journal-title":"Int. J. Eng. Technol."},{"key":"ref_7","doi-asserted-by":"crossref","first-page":"3223","DOI":"10.4028\/www.scientific.net\/AMR.671-674.3223","article-title":"A security framework for the Internet of Things based on public key infrastructure","volume":"671\u2013674","author":"Hong","year":"2013","journal-title":"Adv. Mater. Res."},{"key":"ref_8","doi-asserted-by":"crossref","first-page":"42279","DOI":"10.1109\/ACCESS.2018.2859781","article-title":"A collaborative PHY-aided technique for end-to-end IoT device authentication","volume":"6","author":"Hao","year":"2018","journal-title":"IEEE Access"},{"key":"ref_9","doi-asserted-by":"crossref","first-page":"114","DOI":"10.1016\/j.compeleceng.2016.02.017","article-title":"A lightweight message authentication scheme for smart grid communications in power sector","volume":"52","author":"Mahmood","year":"2016","journal-title":"Comput. Electr. Eng."},{"key":"ref_10","doi-asserted-by":"crossref","first-page":"534","DOI":"10.1016\/j.compeleceng.2017.08.003","article-title":"An efficient ECC-based provably secure three-factor user authentication and key agreement protocol for wireless healthcare sensor networks","volume":"69","author":"Challa","year":"2018","journal-title":"Comput. Electr. Eng."},{"key":"ref_11","doi-asserted-by":"crossref","unstructured":"Chung, Y., Choi, S., Lee, Y., Park, N., and Won, D. (2016). An enhanced lightweight anonymous authentication scheme for a scalable localization roaming service in wireless sensor networks. Sensors, 16.","DOI":"10.3390\/s16101653"},{"key":"ref_12","doi-asserted-by":"crossref","first-page":"96","DOI":"10.1016\/j.adhoc.2014.03.009","article-title":"A novel user authentication and key agreement scheme for heterogeneous ad hoc wireless sensor networks, based on the Internet of Things notion","volume":"20","author":"Brumen","year":"2014","journal-title":"Ad Hoc Netw."},{"key":"ref_13","doi-asserted-by":"crossref","first-page":"1028","DOI":"10.1016\/j.future.2017.08.035","article-title":"A payload-based mutual authentication scheme for Internet of Things","volume":"92","author":"Jan","year":"2019","journal-title":"Future Gener. Comput. Syst."},{"key":"ref_14","doi-asserted-by":"crossref","first-page":"2678","DOI":"10.1002\/sec.551","article-title":"A security authentication scheme in machine-to-machine home network service","volume":"8","author":"Sun","year":"2015","journal-title":"Secur. Commun. Netw."},{"key":"ref_15","doi-asserted-by":"crossref","first-page":"71","DOI":"10.1109\/TDSC.2015.2399297","article-title":"PBA: Prediction-based authentication for vehicle-to-vehicle communications","volume":"13","author":"Lyu","year":"2016","journal-title":"IEEE Trans. Dependable Secur. Comput."},{"key":"ref_16","doi-asserted-by":"crossref","first-page":"2831","DOI":"10.1109\/TIFS.2018.2832849","article-title":"Lightweight and practical anonymous authentication protocol for RFID systems using physically unclonable functions","volume":"13","author":"Gope","year":"2018","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"ref_17","doi-asserted-by":"crossref","unstructured":"Xu, H., Ding, J., Li, P., Zhu, F., and Wang, R. (2018). A lightweight RFID mutual authentication protocol based on physical unclonable function. Sensors, 18.","DOI":"10.3390\/s18030760"},{"key":"ref_18","doi-asserted-by":"crossref","first-page":"102496","DOI":"10.1016\/j.jnca.2019.102496","article-title":"LAM-CIoT: Lightweight authentication mechanism in cloud-based IoT environment","volume":"150","author":"Wazid","year":"2020","journal-title":"J. Netw. Comput. Appl."},{"key":"ref_19","doi-asserted-by":"crossref","first-page":"475","DOI":"10.1016\/j.future.2018.09.017","article-title":"Design of secure key management and user authentication scheme for fog computing services","volume":"91","author":"Wazid","year":"2019","journal-title":"Future Gener. Comput. Syst."},{"key":"ref_20","doi-asserted-by":"crossref","first-page":"7081","DOI":"10.1109\/TII.2019.2942389","article-title":"Designing secure lightweight blockchain-enabled RFID-based authentication protocol for supply chains in 5G mobile edge computing environment","volume":"16","author":"Jangirala","year":"2020","journal-title":"IEEE Trans. Ind. Inform."},{"key":"ref_21","doi-asserted-by":"crossref","first-page":"3572","DOI":"10.1109\/JIOT.2018.2888821","article-title":"Design and Analysis of Secure Lightweight Remote User Authentication and Key Agreement Scheme in Internet of Drones Deployment","volume":"6","author":"Wazid","year":"2019","journal-title":"IEEE Internet Things J."},{"key":"ref_22","doi-asserted-by":"crossref","first-page":"770","DOI":"10.1145\/358790.358797","article-title":"Password authentication with insecure communication","volume":"24","author":"Lamport","year":"1981","journal-title":"Commun. ACM"},{"key":"ref_23","doi-asserted-by":"crossref","first-page":"651","DOI":"10.1016\/j.jcss.2011.09.005","article-title":"Two-server password-only authenticated key exchange","volume":"78","author":"Katz","year":"2012","journal-title":"J. Comput. Syst. Sci."},{"key":"ref_24","doi-asserted-by":"crossref","first-page":"657","DOI":"10.1016\/j.jcss.2007.05.001","article-title":"Cryptanalysis of a password authentication scheme over insecure networks","volume":"74","author":"Xiang","year":"2008","journal-title":"J. Comput. Syst. Sci."},{"key":"ref_25","doi-asserted-by":"crossref","first-page":"1002","DOI":"10.1016\/j.jcss.2006.03.005","article-title":"Password-based authentication and key distribution protocols with perfect forward secrecy","volume":"72","author":"Sun","year":"2006","journal-title":"J. Comput. Syst. Sci."},{"key":"ref_26","doi-asserted-by":"crossref","first-page":"372","DOI":"10.1016\/S0167-4048(02)00415-7","article-title":"An efficient and practical solution to remote authentication: Smart card","volume":"21","author":"Chien","year":"2002","journal-title":"Comput. Secur."},{"key":"ref_27","doi-asserted-by":"crossref","first-page":"723","DOI":"10.1016\/j.csi.2008.09.006","article-title":"An improved smart card based password authentication scheme with provable security","volume":"31","author":"Xu","year":"2009","journal-title":"Comput. Stand. Interfaces"},{"key":"ref_28","first-page":"167","article-title":"An improved efficient remote password authentication scheme with smart card over insecure networks","volume":"13","author":"Kumar","year":"2011","journal-title":"Int. J. Netw. Secur."},{"key":"ref_29","doi-asserted-by":"crossref","first-page":"1267","DOI":"10.1016\/j.future.2018.04.019","article-title":"Design and analysis of authenticated key agreement scheme in cloud-assisted cyber\u2013physical systems","volume":"108","author":"Challa","year":"2020","journal-title":"Future Gener. Comput. Syst."},{"key":"ref_30","doi-asserted-by":"crossref","unstructured":"Lin, C., He, D., Huang, X., Choo, K.-K.R., Vasilakos, A.V., and BSeIn: A blockchain-based secure mutual authentication with fine-grained access control system for industry 4.0 (2018). J. Netw. Comput. Appl., 116, 42\u201352.","DOI":"10.1016\/j.jnca.2018.05.005"},{"key":"ref_31","doi-asserted-by":"crossref","first-page":"24","DOI":"10.1016\/j.csi.2007.10.007","article-title":"A secure dynamic ID based remote user authentication scheme for multi-server environment","volume":"31","author":"Liao","year":"2009","journal-title":"Comput. Stand. Interfaces"},{"key":"ref_32","doi-asserted-by":"crossref","first-page":"1118","DOI":"10.1016\/j.csi.2008.11.002","article-title":"Improvement of the secure dynamic ID based remote user authentication scheme for multi-server environment","volume":"31","author":"Hsiang","year":"2009","journal-title":"Comput. Stand. Interfaces"},{"key":"ref_33","doi-asserted-by":"crossref","first-page":"609","DOI":"10.1016\/j.jnca.2010.11.011","article-title":"A secure dynamic identity based authentication protocol for multi-server architecture","volume":"34","author":"Sood","year":"2011","journal-title":"J. Netw. Comput. Appl."},{"key":"ref_34","first-page":"13863","article-title":"A secure dynamic ID based remote user authentication scheme for multi-server environment using smart cards","volume":"38","author":"Lee","year":"2011","journal-title":"Expert Syst. Appl."},{"key":"ref_35","doi-asserted-by":"crossref","first-page":"195","DOI":"10.1016\/j.jcss.2013.07.004","article-title":"A lightweight dynamic pseudonym identity based authentication and key agreement protocol without verification tables for multi-server architecture","volume":"80","author":"Xue","year":"2014","journal-title":"J. Comput. Syst. Sci."},{"key":"ref_36","doi-asserted-by":"crossref","first-page":"1005","DOI":"10.1016\/j.future.2016.12.028","article-title":"A light weight authentication protocol for IoT-enabled devices in distributed cloud computing environment","volume":"78","author":"Amin","year":"2018","journal-title":"Future Gener. Comput. Syst."},{"key":"ref_37","doi-asserted-by":"crossref","first-page":"2681","DOI":"10.1109\/TIFS.2015.2473820","article-title":"An Efficient Identity-Based Conditional Privacy-Preserving Authentication Scheme for Vehicular Ad Hoc Networks","volume":"10","author":"He","year":"2015","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"ref_38","unstructured":"Zhang, J., Cui, J., Zhong, H., Chen, Z., and Liu, L. (2019). PA-CRT: Chinese Remainder Theorem Based Conditional Privacy-preserving Authentication Scheme in Vehicular Ad-hoc Networks. IEEE Trans. Dependable Secur. Comput., 1."},{"key":"ref_39","doi-asserted-by":"crossref","first-page":"10283","DOI":"10.1109\/TVT.2017.2718101","article-title":"SPACF: A Secure Privacy-Preserving Authentication Scheme for VANET with Cuckoo Filter","volume":"66","author":"Cui","year":"2017","journal-title":"IEEE Trans. Veh. Technol."},{"key":"ref_40","doi-asserted-by":"crossref","first-page":"2467","DOI":"10.1109\/TITS.2016.2634623","article-title":"EAAP: Efficient Anonymous Authentication with Conditional Privacy-Preserving Scheme for Vehicular Ad Hoc Networks","volume":"18","author":"Azees","year":"2017","journal-title":"IEEE Trans. Intell. Transp. Syst."},{"key":"ref_41","doi-asserted-by":"crossref","first-page":"29","DOI":"10.1016\/j.jpdc.2019.09.016","article-title":"A practical group blind signature scheme for privacy protection in smart grid","volume":"136","author":"Kong","year":"2020","journal-title":"J. Parallel Distrib. Comput."},{"key":"ref_42","doi-asserted-by":"crossref","first-page":"244","DOI":"10.1016\/j.future.2018.08.038","article-title":"Lightweight IoT-based authentication scheme in cloud computing circumstance","volume":"91","author":"Zhou","year":"2019","journal-title":"Future Gener. Comput. Syst."},{"key":"ref_43","doi-asserted-by":"crossref","first-page":"21","DOI":"10.1016\/j.procs.2015.05.008","article-title":"Secure user authentication and user anonymity scheme based on quadratic residues for the integrated EPRIS","volume":"52","author":"Li","year":"2015","journal-title":"Procedia Comput. Sci."},{"key":"ref_44","first-page":"765","article-title":"Formal analysis on RFID authentication protocols against de-synchronization attack","volume":"18","author":"Yeh","year":"2017","journal-title":"J. Internet Technol."},{"key":"ref_45","doi-asserted-by":"crossref","first-page":"4615","DOI":"10.1002\/sec.1653","article-title":"An enhanced multi-server authentication protocol using password and smart-card: Cryptanalysis and design","volume":"9","author":"Maitra","year":"2016","journal-title":"Secur. Commun. Netw."}],"container-title":["Sensors"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/1424-8220\/20\/19\/5604\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,11]],"date-time":"2025-10-11T10:15:08Z","timestamp":1760177708000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/1424-8220\/20\/19\/5604"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,9,30]]},"references-count":45,"journal-issue":{"issue":"19","published-online":{"date-parts":[[2020,10]]}},"alternative-id":["s20195604"],"URL":"https:\/\/doi.org\/10.3390\/s20195604","relation":{},"ISSN":["1424-8220"],"issn-type":[{"type":"electronic","value":"1424-8220"}],"subject":[],"published":{"date-parts":[[2020,9,30]]}}}