首页> 外文会议>European symposium on research in computer security >Making Any Identity-Based Encryption Accountable, Efficiently
【24h】

Making Any Identity-Based Encryption Accountable, Efficiently

机译:使任何基于身份的加密有效,有效地

获取原文

摘要

Identity-Based Encryption (IBE) provides a compelling solution to the PKI management problem, however it comes with the serious privacy consideration that a trusted party (called the PKG) is required to generate (and hence also know) the secret keys of all users. This inherent key escrow problem is considered to be one of the major reasons hindering the wider utilization of IBE systems. In order to address this problem, Goyal introduced the notion of accountable authority IBE (A-IBE), in which a judge can differentiate the PKG from the user as the source of a decryption software. Via this "tracing" mechanism, A-IBE deters the PKG from leaking the user's secret key and hence offers a defense mechanism for IBE users against a malicious PKG. All previous works on A-IBE focused on specialized constructions trying to achieve different properties and efficiency enhancements. In this paper for the first time we show how to add accountability to any IBE scheme using oblivious transfer (OT), with almost the same ciphertext efficiency as the underlying IBE. Furthermore, we extend our generic construction to support identity reuse without losing efficiency. This property is desirable in practice as users may accidentally lose their secret keys and they -naturally- prefer not to abandon their identities. How to achieve this property was open until our work. Along the way, we first modify the generic construction and develop a new technique to provide public traceability generically.
机译:基于身份的加密(IBE)为PKI管理问题提供了一个引人注目的解决方案,但是它具有严重的隐私考虑,即可信任的方(称为PKG)来生成(并因此也知道)所有用户的秘密密钥。这种固有的关键托管问题被认为是阻碍IBE系统更广泛利用的主要原因之一。为了解决这个问题,Goyal介绍了对负责任的权威IBE(A-IBE)的概念,其中法官可以将PKG与用户作为解密软件的源区分化。通过此“跟踪”机制,A-IBE阻止PKG泄露用户的秘密密钥,因此为IBE用户提供了对恶意PKG的防御机制。所有以前的工作都在A-IBE上专注于试图实现不同的性能和效率增强的专业结构。在本文首次展示如何使用令人沮丧的转移(OT)向任何IBE方案添加问责制,与底层IBE具有几乎相同的密文效率。此外,我们扩展了我们的通用结构,以支持身份重复使用而不会减少效率。在实践中,此属性是可取的,因为用户可能意外地失去了他们的秘密钥匙,并且它们 - 恰当不会放弃他们的身份。在我们的工作之前,如何实现这一财产。沿途,我们首先修改了通用结构并开发了一种新的技术,以便通常提供公共可追溯性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号