【24h】

Proof-Carrying Proxy Certificates

机译:证明代理证书

获取原文
获取原文并翻译 | 示例

摘要

The term proxy certificate is used to describe a certificate that is issued by an end user for the purpose of delegating responsibility to another user so that the latter can perform certain actions on behalf of the former. Such certificates have been suggested for use in a number of applications, particularly in distributed computing environments where delegation of rights is common. In this paper, we present a new concept called proof-carrying proxy certificates. Our approach allows to combine the verification of the validity of the proxy certificate and the authorization decision making in an elegant way that enhances the privacy of the end user. In contrast with standard proxy certificates that are generated using standard (public-key) signature schemes, the proposed certificates are generated using a signature scheme for which the validity of a generated signature proves the compliance of the signer with a credential-based policy. We present a concrete realization of our approach using bilinear pairings over elliptic curves and we prove its security under adapted attack models.
机译:代理证书一词用于描述最终用户发行的证书,目的是将责任委托给另一个用户,以便后者可以代表前者执行某些操作。已经建议将这种证书用于许多应用中,尤其是在权限委托较为普遍的分布式计算环境中。在本文中,我们提出了一个新概念,即带有证明的代理证书。我们的方法允许以优雅的方式将代理证书有效性的验证与授权决策相结合,从而增强最终用户的隐私。与使用标准(公钥)签名方案生成的标准代理证书相反,建议的证书使用签名方案生成,为此,生成的签名的有效性证明了签名者遵守基于凭据的策略。我们提出了在椭圆曲线上使用双线性配对的方法的具体实现,并在适应的攻击模型下证明了其安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号