首页> 外文期刊>International Journal of Information Security >A survey of certificateless encryption schemes and security models
【24h】

A survey of certificateless encryption schemes and security models

机译:无证书加密方案和安全模型概述

获取原文
获取原文并翻译 | 示例
           

摘要

This paper surveys the literature on certificateless encryption schemes. In particular, we examine the large number of security models that have been proposed to prove the security of certificateless encryption schemes and propose a new nomenclature for these models. This allows us to "rank" the notions of security for a certificateless encryption scheme against an outside attacker and a passive key generation centre, and we suggest which of these notions should be regarded as the "correct" model for a secure certificateless encryption scheme. We also examine the security models that aim to provide security against an actively malicious key generation centre and against an outside attacker who attempts to deceive a legitimate sender into using an incorrect public key (with the intention to deny the legitimate receiver that ability to decrypt the ciphertext). We note that the existing malicious key generation centre model fails to capture realistic attacks that a malicious key generation centre might make and propose a new model. Lastly, we survey the existing certificateless encryption schemes and compare their security proofs. We show that few schemes provide the "correct" notion of security without appealing to the random oracle model. The few schemes that do provide sufficient security guarantees are comparatively inefficient. Hence, we conclude that more research is needed before certificateless encryption schemes can be thought to be a practical technology.
机译:本文调查了有关无证书加密方案的文献。特别是,我们检查了为证明无证书加密方案的安全性而提出的大量安全模型,并为这些模型提出了新的命名法。这使我们可以针对外部攻击者和被动密钥生成中心对无证书加密方案的安全性概念“进行排名”,并且建议将其中哪些概念视为安全无证书加密方案的“正确”模型。我们还研究了旨在为主动恶意密钥生成中心和试图欺骗合法发送者使用不正确的公共密钥的外部攻击者提供安全性的安全模型(目的是拒绝合法接收者解密该密钥的能力)。密文)。我们注意到,现有的恶意密钥生成中心模型无法捕获恶意密钥生成中心可能进行的现实攻击并提出了新模型。最后,我们调查了现有的无证书加密方案并比较了它们的安全性证明。我们表明,很少有方案提供“正确”的安全性概念而不吸引随机预言模型。确实能够提供足够的安全保证的几种方案效率相对较低。因此,我们得出结论,在将无证书加密方案视为实用技术之前,需要进行更多的研究。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号