首页> 外文OA文献 >Key exchange using biometric identity based encryption for sharing encrypted data in cloud environment
【2h】

Key exchange using biometric identity based encryption for sharing encrypted data in cloud environment

机译:使用基于生物特征的加密的密钥交换,用于在云环境中共享加密的数据

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

The main problem associated with using symmetric/ asymmetric keys is how to securely store and exchange the keys between the parties over open networks particularly in the open environment such as cloud computing. Public Key Infrastructure (PKI) have been providing a practical solution for session key exchange for loads of web services. The key limitation of PKI solution is not only the need for a trusted third partly (e.g. certificate authority) but also the absent link between data owner and the encryption keys. The latter is arguably more important where accessing data needs to be linked with identify of the owner. Currently available key exchange protocols depend on using trusted couriers or secure channels, which can be subject to man-in-the-middle attack and various other attacks. This paper proposes a new protocol for Key Exchange using Biometric Identity Based Encryption (KE-BIBE) that enables parties to securely exchange cryptographic keys even an adversary is monitoring the communication channel between the parties. The proposed protocol combines biometrics with IBE in order to provide a secure way to access symmetric keys based on the identity of the users in unsecure environment. In the KE-BIOBE protocol, the message is first encrypted by the data owner using a traditional symmetric key before migrating it to a cloud storage. The symmetric key is then encrypted using public biometrics of the users selected by data owner to decrypt the message based on Fuzzy Identity-Based Encryption. Only the selected users will be able to decrypt the message by providing a fresh sample of their biometric data. The paper argues that the proposed solution eliminates the needs for a key distribution centre in traditional cryptography. It will also give data owner the power of fine-grained sharing of encrypted data by control who can access their data.
机译:与使用对称/非对称密钥相关的主要问题是如何通过开放网络,特别是在诸如云计算之类的开放环境中,在各方之间安全地存储和交换密钥。公钥基础结构(PKI)已经为Web服务负载的会话密钥交换提供了一种实用的解决方案。 PKI解决方案的关键限制不仅是需要第三方的信任(例如证书颁发机构),而且数据所有者和加密密钥之间也缺少链接。在需要将访问数据与所有者的身份相关联的情况下,后者可能更为重要。当前可用的密钥交换协议取决于使用受信任的信使或安全通道,这可能会受到中间人攻击和各种其他攻击。本文提出了一种新的密钥交换协议,该协议使用基于生物特征身份的加密(KE-BIBE),即使对手正在监视双方之间的通信通道,该协议也可使各方安全地交换密码密钥。所提出的协议将生物识别技术与IBE结合在一起,以提供一种基于不安全环境中用户身份的安全方式来访问对称密钥。在KE-BIOBE协议中,数据所有者首先使用传统的对称密钥对消息进行加密,然后再将其迁移到云存储中。然后使用数据所有者选择的用户的公共生物特征加密对称密钥,以基于基于模糊身份的加密对消息进行解密。只有选定的用户才能通过提供其生物特征数据的新样本来解密消息。本文认为,所提出的解决方案消除了传统密码学中对密钥分发中心的需求。通过控制谁可以访问数据,它也将赋予数据所有者细粒度共享加密数据的能力。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号