...
首页> 外文期刊>Wireless personal communications: An Internaional Journal >Forward-Secure Identity-Based Signature Scheme in Untrusted Update Environments
【24h】

Forward-Secure Identity-Based Signature Scheme in Untrusted Update Environments

机译:不可信更新环境中基于前向安全身份的签名方案

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

Forward-secure signatures are proposed to diminish the damage of key exposure, in which the security of signatures prior to the period of key exposure can be kept. Identity-based signatures can reduce the complexity and the cost for managing the public key because the public key is replaced by any known information of a user's identity. In this paper, we discuss a new issue related to integrating forward-secure and identity-based primitives into standard applications of personal network communication security such as pretty good privacy suite and secure/multipurpose internet mail extensions in which the secret key is additionally protected by an extra secret that is possibly derived from a password. One major contribution of this paper is to construct the first forward-secure identity-based signature scheme in untrusted update environments. In this scheme, the public key can be derived from some arbitrary identification value such as an email address or a phone number, and the signing key is additionally shielded by a second factor derived from a user's password. Key update can be completed by the encrypted version of signing keys. The second factor is only needed when the signatures are produced. In addition, we give the definitions of forward security and update security in this kind of signature. At last, formal proofs of forward security and update security in the random oracle model are provided under the CDH assumption.
机译:提出前向安全签名以减少密钥暴露的损害,其中可以保持密钥暴露期之前的签名的安全性。基于身份的签名可以降低管理公共密钥的复杂性和成本,因为公共密钥被用户身份的任何已知信息替代。在本文中,我们讨论了一个与将前向安全性和基于身份的原语集成到个人网络通信安全性的标准应用程序中有关的新问题,例如相当好的隐私套件和安全/多用途Internet邮件扩展,其中,秘密密钥还受到了保护可能来自密码的额外机密。本文的主要贡献是在不受信任的更新环境中构造了第一个基于前向安全身份的签名方案。在该方案中,可以从某个任意标识值(例如电子邮件地址或电话号码)派生公共密钥,并且签名密钥还被从用户密码派生的第二因素屏蔽。密钥更新可以通过签名密钥的加密版本来完成。仅当产生签名时才需要第二个因素。另外,我们通过这种签名给出前向安全性的定义和更新安全性。最后,在CDH假设下提供了随机预言模型中前向安全性和更新安全性的形式证明。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号