首页> 外文期刊>Internet of Things Journal, IEEE >CPAL: A Conditional Privacy-Preserving Authentication With Access Linkability for Roaming Service
【24h】

CPAL: A Conditional Privacy-Preserving Authentication With Access Linkability for Roaming Service

机译:CPAL:具有访问链接能力的条件隐私保护身份验证,用于漫游服务

获取原文
获取原文并翻译 | 示例
           

摘要

The roaming service enables mobile subscribers to access the internet service anytime and anywhere, which can fulfill the requirement of ubiquitous access for the emerging paradigm of networking, e.g., the Internet of Things (IoT). In this paper, we propose a conditional privacy-preserving authentication with access linkability (CPAL) for roaming service, to provide universal secure roaming service and multilevel privacy preservation. CPAL provides an anonymous user linking function by utilizing a novel group signature technique, which can not only efficiently hide users' identities but also enables the authorized entities to link all the access information of the same user without knowing the user's real identity. Specifically, by using the master linking key possessed by the trust linking server, the authorized foreign network operators or service providers can link the access information from the user to improve its service, while preserving user anonymity, e.g., using individual access information to analyze user preferences without revealing user's identity. Furthermore, the subscribers can also use this functionality to anonymously query their usage of service. In addition, CPAL has an efficient revocation function, which revokes a group of users at the same time. Through extensive analysis, we demonstrate that CPAL resists various security threats and provides more flexible privacy preservation compared to the existing schemes. Meanwhile, performance evaluations demonstrate its efficiency in terms of communication and computation overhead.
机译:漫游服务使移动订户可以随时随地访问互联网服务,这可以满足新兴的联网范例(例如,物联网)的普遍访问需求。在本文中,我们提出了一种具有访问链接能力(CPAL)的条件隐私保护认证用于漫游服务,以提供通用的安全漫游服务和多层隐私保护。 CPAL利用一种新颖的组签名技术提供了匿名用户链接功能,该功能不仅可以有效地隐藏用户的身份,而且还可以使授权实体链接同一用户的所有访问信息而无需知道用户的真实身份。具体而言,通过使用信任链接服务器拥有的主链接密钥,授权的外部网络运营商或服务提供商可以链接来自用户的访问信息以改善其服务,同时保留用户的匿名性,例如,使用各个访问信息来分析用户偏好,而不会透露用户的身份。此外,订户还可以使用此功能来匿名查询其服务使用情况。另外,CPAL具有高效的撤消功能,可以同时撤消一组用户。通过广泛的分析,我们证明了CPAL可以抵抗各种安全威胁,并且与现有方案相比,可以更灵活地保护隐私。同时,性能评估证明了其在通信和计算开销方面的效率。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号