首页> 外文期刊>Journal of supercomputing >Attribute-based authentication on the cloud for thin clients
【24h】

Attribute-based authentication on the cloud for thin clients

机译:瘦客户端在云上基于属性的身份验证

获取原文
获取原文并翻译 | 示例

摘要

We propose two new authentication schemes for the cloud that support private attribute-based authentication services. The basic scheme is non-anonymous attribute-based authentication scheme. The extended scheme of the basic scheme is fully anonymous attribute-based authentication scheme to realize full anonymity and unlinkability services. In the proposed schemes, a user is authenticated by the remote server if the intersection of the set of his/her assigned attributes and the server's required attributes exceeds a satisfactory predefined level. Unlike existing attribute-based encryption and signature schemes that require the user to perform significant amount of elliptic curve bilinear pairings and modular exponentiations, and require the user to hold a significantly long decryption/signature key, in our schemes the user is not required to perform any bilinear pairings. With a fixed length private key, independent of the number of attributes, the cloud user performs only few exponentiations by which he/she is able to authenticate himself/herself to the remote server and establish a session key with the server with the condition that he/she satisfies a predefined level of the server's attributes requirement. Therefore, our schemes are suitable for implementation on devices with limited resources. We provide the rigorous security of the proposed schemes and complexity analysis of our schemes. Finally, the security and performance comparisons of our schemes with the existing related schemes show that our schemes outperform other existing schemes.
机译:我们为云提出了两种新的身份验证方案,它们支持基于私有属性的身份验证服务。基本方案是基于匿名属性的非匿名认证方案。基本方案的扩展方案是完全基于匿名属性的身份验证方案,以实现完全匿名和不可链接服务。在提出的方案中,如果一组用户分配的属性和服务器的所需属性的交集超过令人满意的预定义级别,则该用户将由远程服务器进行身份验证。与现有的基于属性的加密和签名方案不同,该方案要求用户执行大量的椭圆曲线双线性配对和模幂运算,并要求用户持有相当长的解密/签名密钥,而在我们的方案中,不需要用户执行任何双线性对。使用固定长度的私钥,与属性的数量无关,云用户仅执行很少的取幂操作,从而使他/她能够向远程服务器进行身份验证并与服务器建立会话密钥,前提是他/她/ she满足服务器属性要求的预定义级别。因此,我们的方案适合在资源有限的设备上实施。我们提供建议方案的严格安全性和方案的复杂性分析。最后,我们的方案与现有相关方案的安全性和性能比较表明,我们的方案优于其他现有方案。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号