) In the time-variant password authentication method, server B sends a random challenge number c to A. To successfully authenticate to B, A returns the value h(c, p) using a suitable hash function for A's password p, where c and p are combined (concatenated) together before being input to the function h(). B, knowing A's password, confirms that the submitted value is correct. Assuming that B might repeat the previously-used challenge, explain how an attacker X can attempt to impersonate A to B. Does the addition of a salt value s to A's response help to protect against the impersonation by X?

Database System Concepts
7th Edition
ISBN:9780078022159
Author:Abraham Silberschatz Professor, Henry F. Korth, S. Sudarshan
Publisher:Abraham Silberschatz Professor, Henry F. Korth, S. Sudarshan
Chapter1: Introduction
Section: Chapter Questions
Problem 1PE
icon
Related questions
Question
Please give me correct solution.
) In the time-variant password
authentication method, server B sends a
random challenge number c to A. To
successfully authenticate to B, A returns the
value h(c, p) using a suitable hash function
for A's password p, where c and p are
combined (concatenated) together before
being input to the function h(). B, knowing
A's password, confirms that the submitted
value is correct. Assuming that B might
repeat the previously-used challenge,
explain how an attacker X can attempt to
impersonate A to B. Does the addition of a
salt value s to A's response help to protect
against the impersonation by X?
Transcribed Image Text:) In the time-variant password authentication method, server B sends a random challenge number c to A. To successfully authenticate to B, A returns the value h(c, p) using a suitable hash function for A's password p, where c and p are combined (concatenated) together before being input to the function h(). B, knowing A's password, confirms that the submitted value is correct. Assuming that B might repeat the previously-used challenge, explain how an attacker X can attempt to impersonate A to B. Does the addition of a salt value s to A's response help to protect against the impersonation by X?
Expert Solution
steps

Step by step

Solved in 3 steps

Blurred answer
Knowledge Booster
Hash Table
Learn more about
Need a deep-dive on the concept behind this application? Look no further. Learn more about this topic, computer-science and related others by exploring similar questions and additional content below.
Recommended textbooks for you
Database System Concepts
Database System Concepts
Computer Science
ISBN:
9780078022159
Author:
Abraham Silberschatz Professor, Henry F. Korth, S. Sudarshan
Publisher:
McGraw-Hill Education
Starting Out with Python (4th Edition)
Starting Out with Python (4th Edition)
Computer Science
ISBN:
9780134444321
Author:
Tony Gaddis
Publisher:
PEARSON
Digital Fundamentals (11th Edition)
Digital Fundamentals (11th Edition)
Computer Science
ISBN:
9780132737968
Author:
Thomas L. Floyd
Publisher:
PEARSON
C How to Program (8th Edition)
C How to Program (8th Edition)
Computer Science
ISBN:
9780133976892
Author:
Paul J. Deitel, Harvey Deitel
Publisher:
PEARSON
Database Systems: Design, Implementation, & Manag…
Database Systems: Design, Implementation, & Manag…
Computer Science
ISBN:
9781337627900
Author:
Carlos Coronel, Steven Morris
Publisher:
Cengage Learning
Programmable Logic Controllers
Programmable Logic Controllers
Computer Science
ISBN:
9780073373843
Author:
Frank D. Petruzella
Publisher:
McGraw-Hill Education