首页> 外文会议> >Pseudo Trust: Zero-Knowledge Based Authentication in Anonymous Peer-to-Peer Protocols
【24h】

Pseudo Trust: Zero-Knowledge Based Authentication in Anonymous Peer-to-Peer Protocols

机译:伪信任:匿名对等协议中基于零知识的身份验证

获取原文

摘要

Most of the current trust models in peer-to-peer (P2P) systems are identity based, which means that in order for one peer to trust another, it needs to know the other peer''s identity. Hence, there exists an inherent tradeoff between trust and anonymity. To the best of our knowledge, there is currently no P2P protocol that provides complete mutual anonymity as well as authentication and trust management. We propose a zero-knowledge authentication scheme called pseudo trust (PT), where each peer, instead of using its real identity, generates an unforgeable and verifiable pseudonym using a one-way hash function. A novel authentication scheme based on zero-knowledge proof is designed so peers can be authenticated without leaking any sensitive information. With the help of PT, most existing identity-based trust management schemes become applicable in mutual anonymous P2P systems. We analyze the levels of security and anonymity in PT, and evaluate its performance using trace-driven simulations and a prototype implementation. The strengths of pseudo trust include the lack of need for a centralized trusted party or CA, high scalability and security, low traffic and cryptography processing overheads, and man-in-middle attack resistance. We aim for the pseudo trust design to be included in the P2P trust and anonymity context.
机译:对等(P2P)系统中当前的大多数信任模型都是基于身份的,这意味着,为了使一个对等方信任另一个,它需要知道另一个对等方的身份。因此,在信任和匿名之间存在固有的权衡。据我们所知,目前还没有提供完全相互匿名以及身份验证和信任管理的P2P协议。我们提出了一种称为伪信任(PT)的零知识认证方案,该方案中的每个对等方都使用单向哈希函数而不是使用其真实身份来生成不可伪造和可验证的假名。设计了一种基于零知识证明的新颖认证方案,以便可以对等体进行认证而不会泄漏任何敏感信息。借助PT,大多数现有的基于身份的信任管理方案都可以应用于相互匿名的P2P系统中。我们分析PT中的安全性和匿名性级别,并使用跟踪驱动的模拟和原型实现来评估其性能。伪信任的优点包括:不需要集中的受信方或CA,高可伸缩性和安全性,低流量和密码处理开销以及中间人的攻击抵抗力。我们旨在将伪信任设计包含在P2P信任和匿名上下文中。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号