首页> 外文会议>Meeting of the internet engineering task force;IETF >Subset-Difference based Key Management for Secure Multicast
【24h】

Subset-Difference based Key Management for Secure Multicast

机译:基于子集差异的密钥管理,用于安全组播

获取原文

摘要

This document describes a key management mechanism for multicastcommunication sessions that is based on the 'Subset-Difference'algorithm. The Subset-Difference algorithm is a new revocationscheme which allows a Center (such as a Group Controller/ Key Manager)to send a message so that *every* authorized receiver, butnone of the revoked receivers, can decrypt. This message consists of only 2rkeys, where r is the number of revoked group members.In this draft we first describe this new revocation scheme, andthen then discuss how it can be used for key managementin Secure Multicast applications. Its main advantage is that iteliminates the need for a mechanism that allows individual updates incase a user did not receive or did not perform the required re-keingoperations. This is particularly useful in settings with unreliablecommunication or high rates of packet loss. It also providesan elegant and efficient solution for the backward secrecyproblem. The algorithm guarantees complete secure multicastcommunication even if all revoked users (non group-members)collude their keys.
机译:本文档介绍了基于“子集差异”算法的多播通信会话的密钥管理机制。子集差异算法是一种新的撤消方案,该方案允许中心(例如组控制器/密钥管理器)发送消息,以便*每个*授权接收者(但没有被撤消的接收者)可以解密。该消息仅包含2个rkey,其中r是被撤消的组成员的数量。在本草案中,我们首先描述此新的撤消方案,然后讨论如何将其用于安全组播应用程序中的密钥管理。其主要优点是消除了对一种机制的需求,该机制允许在用户未收到或未执行所需的重新激活操作的情况下进行单独更新。这在通信不可靠或丢包率很高的设置中特别有用。它还为后向保密问题提供了一种优雅而有效的解决方案。即使所有被撤消的用户(非组成员)串通其密钥,该算法也可确保完全安全的多播通信。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号