首页> 外文OA文献 >On the Use of Key Assignment Schemes in Authentication Protocols
【2h】

On the Use of Key Assignment Schemes in Authentication Protocols

机译:关于密钥分配方案在认证协议中的应用

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

Key Assignment Schemes (KASs) have been extensively studied in the context ofcryptographically-enforced access control, where derived keys are used todecrypt protected resources. In this paper, we explore the use of KASs inentity authentication protocols, where we use derived keys to encryptchallenges. This novel use of KASs permits the efficient authentication of anentity in accordance with an authentication policy by associating entities withsecurity labels representing specific services. Cryptographic keys areassociated with each security label and demonstrating knowledge of anappropriate key is used as the basis for authentication. Thus, by controllingthe distribution of such keys, restrictions may be efficiently placed upon thecircumstances under which an entity may be authenticated and the services towhich they may gain access. In this work, we explore how both standardized protocols and novelconstructions may be developed to authenticate entities as members of a groupassociated to a particular security label, whilst protecting the long-termsecrets in the system. We also see that such constructions may allow forauthentication whilst preserving anonymity, and that by including a trustedthird party we can achieve the authentication of individual identities andauthentication based on timestamps without the need for synchronized clocks.
机译:密钥分配方案(KAS)在加密强制的访问控制的上下文中得到了广泛的研究,其中派生密钥用于解密受保护的资源。在本文中,我们探索了KAS实体身份验证协议的使用,其中我们使用派生密钥来加密挑战。通过将实体与代表特定服务的安全标签相关联,KAS的这种新颖用法可以根据身份验证策略对实体进行有效身份验证。与每个安全标签相关联并显示适当密钥知识的加密密钥区域用作身份验证的基础。因此,通过控制这样的密钥的分布,可以有效地对实体可以被认证的环境以及它们可以访问的服务施加限制。在这项工作中,我们探索如何开发标准化的协议和新颖的结构,以将实体认证为与特定安全标签关联的组的成员,同时保护系统中的长期秘密。我们还看到,这样的构造可以在保留匿名性的同时进行身份验证,并且通过包含受信任的第三方,我们可以基于时间戳实现对个人身份的身份验证和身份验证,而无需同步时钟。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号