首页> 外文OA文献 >Anonymous Authentication Using Secure Multi-Party Computations
【2h】

Anonymous Authentication Using Secure Multi-Party Computations

机译:使用安全的多方计算进行匿名身份验证

摘要

Typical authentication systems provide a method to allow registered users access to protected resources after the user successfully authenticates. A user successfully authenticates by proving his or her valid identity if he or she is a registered user. During a typical authentication process, the authentication server can directly or indirectly learn the actual identity of the user who authenticates. However, the user might not want any one to know the actual identity of the user, while still able to authenticate. This problem of user's anonymous authentication is the focus of this thesis project. This thesis project provides a solution for user's anonymous authentication using Secure Multi-party Computation (SMPC). In SMPC, the user information is distributed among the authentication servers, using a secret sharing scheme, in such a way that none of the authentication server individually possesses all the information of a user. However, these authentication servers can validate the user using some SMPC arithmetic operations. This thesis project provides a model for anonymous authentication and couples this anonymous authentication system with the Open Authentication Protocol (OAuth) to allow the user access to protected resources on the server. The model is explained using UML collaborations and SDL state transition diagrams. A analysis of the model is provided to ensure the security of the proposed system. A skeleton of the proposed model is provided which needs to be completed with appropriate code to realize the functionalities. This thesis project also provides an implementation of a simplified prototype which represents the core of the proposed model for anonymous authentication.
机译:典型的身份验证系统提供了一种方法,该方法允许注册用户在用户成功进行身份验证后访问受保护的资源。如果用户是注册用户,则通过证明其有效身份来成功进行身份验证。在典型的身份验证过程中,身份验证服务器可以直接或间接了解进行身份验证的用户的实际身份。但是,用户可能不希望任何人知道用户的实际身份,同时仍然能够进行身份验证。用户匿名认证的问题是本项目的重点。本项目为使用安全多方计算(SMPC)的用户匿名身份验证提供了一种解决方案。在SMPC中,用户信息使用秘密共享方案在身份验证服务器之间分配,使得没有一个身份验证服务器单独拥有用户的所有信息。但是,这些身份验证服务器可以使用某些SMPC算术运算来验证用户。该项目为匿名身份验证提供了一个模型,并将该匿名身份验证系统与开放身份验证协议(OAuth)结合使用,以允许用户访问服务器上受保护的资源。使用UML协作和SDL状态转换图说明了该模型。对模型进行了分析,以确保所提出系统的安全性。提供了所提出模型的框架,需要用适当的代码来完成以实现功能。本论文项目还提供了简化原型的实现,该原型代表了所提出的匿名身份验证模型的核心。

著录项

  • 作者

    Ahmad Maqsood;

  • 作者单位
  • 年度 2011
  • 总页数
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号