首页> 外文会议>International Conference on Information and Communications Security >PoS: Constructing Practical and Efficient Public Key Cryptosystems Based on Symmetric Cryptography with SGX
【24h】

PoS: Constructing Practical and Efficient Public Key Cryptosystems Based on Symmetric Cryptography with SGX

机译:POS:构建基于SGX对称密码学的实用和高效公钥密码系统

获取原文

摘要

Public key cryptosystems (PKCs) often rely on public key algorithms based on mathematical problems that currently admit no efficient solution, such as integer factorization and discrete logarithm, which are relatively computationally costly compared with most symmetric key algorithms of equivalent security. In this paper, we propose PoS, constructing practical and efficient PKCs based on symmetric cryptography with SGX. To achieve this, we separate private and public operations into dedicated private and public SGX enclaves, hosted on the recipient and sender sides respectively, and leverage the security mechanisms provided by SGX to make symmetric keys shared between private enclave and public enclave, while being kept secret from the sender, by limiting the shared keys within public enclave and not exportable. PoS gains security guarantees when the security assumptions of SGX and symmetric cryptography stand. To demonstrate the practicality and efficiency of the PKCs constructed on PoS, we have constructed, implemented, and benchmarked two PKCs based on PoS, PKE-PoS and IBE-PoS. The evaluation results show that both PKE-PoS and IBE-PoS gain excellent performance: the performance of PKE-PoS is up to 195 times of that of RSA-2048, and the performance of IBE-PoS is up to 4 orders of magnitude higher than that of Boneh-Franklin IBE.
机译:公钥密码系统(PKCS)通常依赖于公钥基于当前承认没有有效解决方案的数学问题,例如整数分解和离散对数,与等效安全性的大多数对称密钥算法相对昂贵。本文提出了基于SGX对称密码的POS,构建实用和高效的PKCS。为实现这一目标,我们将私有和公共业务分别分别分别托管在收件人和发件人侧面的专用私有和公共SGX侧面,并利用SGX提供的安全机制,使私有飞地和公共环保之间共享的对称密钥,同时保留通过限制公共中心内的共享密钥和不可出口的共享密钥来秘密。当SGX和对称加密架的安全假设时,POS获得安全保障。为了证明POS上构建的PKC的实用性和效率,我们基于POS,PKE-POS和IBE-POS构建,实施和基准两种PKC。评估结果表明,PKE-POS和IBE-POS均获得优异的性能:PKE-POS的性能高达RSA-2048的195倍,IBE-POS的性能高达4个数量级而不是Boneh-Franklin IBE。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号