首页> 外文OA文献 >Securing group communication in dynamic, disadvantaged networks : implementation of an elliptic-curve pairing-based cryptography library
【2h】

Securing group communication in dynamic, disadvantaged networks : implementation of an elliptic-curve pairing-based cryptography library

机译:在动态,不利的网络中保护群组通信:实现基于椭圆曲线配对的密码库

摘要

This thesis considers the problem of securing communication among dynamic groups of participants without relying on an online group keying service. As a solution, we offer the design and implementation of the Public Key Group Encryption (PKGE) service. It is a cryptography library, written in C, and designed to be shared among all communications applications on any particular system. PKGE imposes low communication overhead and embraces disconnected operation, making it especially appropriate for deployment in low-bandwidth tactical environments. PKGE provides forward-secure confidentiality and authentication among any subset of users using small communication overhead by bringing together a number of modern cryptographic developments, with the piece de resistance being the elliptic curve-based Collusion-Resistant Broadcast Encryption. The focus of this thesis is primarily the engineering and synthesis of known theoretical schemes; we also present novel extensions to the Boneh-Gentry-Waters encryption scheme. 1. Forward secrecy: Add forward secrecy to the scheme at a cost of T private keys for T security epochs. 2. Optimized session protocols: Sidestep the majority of costs in computation and bandwidth. 3. Cheap over-provisioning of system capacity: Support up to 232 users for resource costs proportional only to the number actually registered. 4. Chosen Ciphertext Attack (CCA) Security: Elevate security from CPA to CCA strength. Using PKGE, we have developed a plugin for Gaim2 as a motivating launch application. The plugin both demonstrates the use of PKGE and enables secure conferencing over the range of Gaim-supported protocols, including Jabber, IRC, AIM, and ICQ. PKGE and its Gaim plugin may be run and further developed under MS Windows, Mac OS X, and Linux operating systems.
机译:本文考虑了不依赖在线组密钥服务而确保动态参与者组之间的通信安全的问题。作为解决方案,我们提供了公共密钥组加密(PKGE)服务的设计和实现。它是一个用C语言编写的加密库,旨在在任何特定系统上的所有通信应用程序之间共享。 PKGE的通信开销较低,并且包含断开连接的操作,因此特别适合在低带宽战术环境中进行部署。 PKGE通过整合许多现代密码技术的发展,以较小的通信开销在用户的任何子集之间提供了前向安全的机密性和身份验证,其中最主要的功能是基于椭圆曲线的防串扰广播加密。本文的重点主要是已知理论方案的工程和综合。我们还介绍了Boneh-Gentry-Waters加密方案的新颖扩展。 1.前向保密性:为T个安全历元以T个私钥的代价为该方案添加前向保密性。 2.优化的会话协议:避免计算和带宽方面的大部分成本。 3.便宜的系统容量超额配置:支持多达232个用户的资源成本仅与实际注册的数量成比例。 4.选择的密文攻击(CCA)安全性:将安全性从CPA提升到CCA强度。使用PKGE,我们为Gaim2开发了一个插件,作为激励启动应用程序。该插件不仅演示了PKGE的用法,而且还支持Gaim支持的协议(包括Jabber,IRC,AIM和ICQ)范围内的安全会议。 PKGE及其Gaim插件可以在MS Windows,Mac OS X和Linux操作系统下运行和进一步开发。

著录项

  • 作者

    Figueiredo Rob;

  • 作者单位
  • 年度 2006
  • 总页数
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号