This paper presents a new password-based authentication protocol that enhances security in distributed systems by utilizing system serial numbers for both user and server identification. It addresses vulnerabilities such as password guessing, replay attacks, and man-in-the-middle attacks by ensuring that attackers cannot gain immediate access without the unique system identifiers. The proposed method promotes increased security by allowing for the generation of unique identifiers while eliminating the need to store user passwords.