【24h】

A -Anonymous Secret Handshakes with Reusable Credentials

机译:具有可重用凭据的A匿名秘密握手

获取原文
获取原文并翻译 | 示例

摘要

The problem of privacy-preserving authentication has been extensively investigated in a set of diverse system settings. However, a full-fledged such mechanism called secret handshake, whereby two users (e.g., CIA agents) authenticate each other in a way that no one reveals its own membership (or credential) unless the peer's legitimacy was already ensured of, remains to be elusive because simultaneity of authentication must be guaranteed even in the presence of an active adversary that may act as a handshake initiator or responder. The state-of-the-art secret handshake scheme is very efficient, but imposes on the users the following restriction: either they have to use one-time credentials, or they have to suffer from the privacy degradation that all the sessions involving a same user (or credential) are trivially linkable. In this paper, we present the first secret handshake schemes that achieve unlinkability while allowing the users to reuse their credentials (i.e., unlinkability is not achieved by means of one-time credentials). Specifically, we introduce the concept of k-anonymous secret handshakes where k is an adjustable parameter indicating the desired anonymity assurance. We present a detailed construction based on public key cryptosystems, and sketch another based on symmetric key cryptosystems. Both schemes are efficient, and their security analysis does not resort to any random oracle.
机译:在一组不同的系统设置中,对隐私保护身份验证的问题进行了广泛研究。但是,这种成熟的机制称为“秘密握手”,通过这种机制,两个用户(例如CIA代理)可以相互验证身份,除非已经确保对等方的合法性,否则任何人都不会泄露其自身的成员资格(或证书)。难以捉摸,因为即使在存在可能充当握手发起者或响应者的主动对手的情况下,也必须确保身份验证的同时性。最新的秘密握手方案非常有效,但是对用户施加了以下限制:他们必须使用一次性凭证,或者必须遭受所有会话涉及相同会话的隐私降级的困扰。用户(或凭据)是可微链接的。在本文中,我们介绍了第一个秘密握手方案,该方案实现了不可链接性,同时允许用户重用其凭据(即,无法通过一次性凭据实现不可链接性)。具体而言,我们介绍了k-匿名秘密握手的概念,其中k是指示所需匿名保证的可调参数。我们提出了一个基于公钥密码系统的详细构造,并草绘了另一个基于对称密钥密码系统的草图。两种方案都是有效的,并且它们的安全性分析没有求助于任何随机预言。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号