...
首页> 外文期刊>The Computer journal >On the (In)Security of Recent Group Key Distribution Protocols
【24h】

On the (In)Security of Recent Group Key Distribution Protocols

机译:关于最近的组密钥分发协议的(安全)安全性

获取原文
获取原文并翻译 | 示例
           

摘要

group key distribution;multicast key distribution;broadcast encryption;collusion attacks;cryptanalysis%A typical stateful (resp. stateless) group key distribution (GKD) protocol is composed of a secret assignment algorithm, and stateful join/leave rekeying algorithms (resp. a stateless group rekeying algorithm). Any design flaw in any of these algorithms could lead to attacks on GKD protocols. We show how two recently-proposed stateful GKD protocols based on asymmetric cryptographic primitives suffer from collusion attacks due to security flaws in either secret assignment algorithms or leave rekeying algorithms. A variety of single-user attacks and improvements on stateless group rekeying algorithms of a number of GKD protocols based on Shamir's Secret-Sharing Scheme (SSS) have been put forward. We show the stateless group rekeying algorithms of one improved protocol and its variant (proposed by us) still suffer from attacks. In addition, we prove a lower bound on the size of a user's long-term secret for perfectly secure multi-session stateless GKD protocols. This bound reveals that (i) it is impossible to design an infinite-session stateless GKD protocol that is both perfectly secure and practical; (ii) all the considered SSS-based stateless GKD protocols are bound to be either incorrect or vulnerable to attacks. This work highlights the urgent necessity of adopting the provable security approach in this research field.
机译:组密钥分发;多播密钥分发;广播加密;共谋攻击;密码分析%典型的有状态(无状态)组密钥分发(GKD)协议由秘密分配算法和有状态的加入/离开重密钥算法(resp。a)组成。无状态组密钥更新算法)。这些算法中的任何设计缺陷都可能导致对GKD协议的攻击。我们展示了两个最近提出的基于非对称密码原语的有状态GKD协议如何由于秘密分配算法或离开密钥更新算法中的安全漏洞而遭受共谋攻击。提出了多种单用户攻击和基于Shamir的秘密共享方案(SSS)的许多GKD协议的无状态组密钥更新算法的改进。我们显示了一种改进协议的无状态组密钥更新算法,其变体(由我们提出)仍然遭受攻击。此外,对于完全安全的多会话无状态GKD协议,我们证明了用户长期机密大小的下限。此界限表明:(i)不可能设计出既安全又实用的无限会话无状态GKD协议; (ii)所有考虑的基于SSS的无状态GKD协议都将不正确或容易受到攻击。这项工作强调了在该研究领域中采用可证明的安全性方法的迫切必要性。

著录项

  • 来源
    《The Computer journal》 |2017年第4期|507-526|共20页
  • 作者单位

    School of Software, Yunnan University, Kunming 650091, China;

    School of Information Science and Engineering, Yunnan University, Kunming 650091, China;

    School of Information Science and Technology, Sun Yat-sen University, Guangzhou 510275, China;

    School of Software, Yunnan University, Kunming 650091, China;

    School of Software, Yunnan University, Kunming 650091, China;

    School of Software, Yunnan University, Kunming 650091, China;

    School of Software, Yunnan University, Kunming 650091, China;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号