首页 | 官方网站   微博 | 高级检索  
     

支持用户撤销的属性认证密钥协商协议
引用本文:李 强,冯登国,张立武.支持用户撤销的属性认证密钥协商协议[J].通信学报,2014,35(5):5-43.
作者姓名:李 强  冯登国  张立武
作者单位:中国科学院 软件研究所 可信计算与信息保障实验室,北京 100190
基金项目:国家重点基础研究发展计划(“973”计划)基金资助项目(2013CB338003);国家高技术研究发展计划(“863”计划)基金资助项目(2012AA01A403);国家自然科学基金资助项目(91118006)
摘    要:用户撤销是基于属性的认证密钥协商(ABAKA, attribute-based authenticated key agreement)协议在实际应用中所必需解决的问题。通过将Waters的基于属性的加密方案和Boneh-Gentry-Waters的广播加密方案相结合,提出了一个支持用户撤销的ABAKA协议。该协议能够实现对用户的即时撤销且不需要密钥权威对所有未被撤销的用户私钥进行定期更新。相比于现有的协议,该协议具有较高的通信效率,并能够在标准模型和修改的ABCK模型下可证安全,具有弱的完美前向安全性,并能够抵抗密钥泄露伪装攻击。

关 键 词:认证  密钥协商  基于属性  密钥撤销  标准模型

Attribute-based authenticated key agreement protocol supporting revocation
Qiang LI,Deng-guo FENG,Li-wu ZHANG.Attribute-based authenticated key agreement protocol supporting revocation[J].Journal on Communications,2014,35(5):5-43.
Authors:Qiang LI  Deng-guo FENG  Li-wu ZHANG
Affiliation:TCA, Institute of Software, Chinese Academy of Sciences, Beijing 100190, China
Abstract:Revocation is a crucial issue for the practical use of attribute-based authenticated key agreement (ABAKA) protocols. A new ABAKA protocol supporting revocation was proposed. The protocol based on Waters' ciphertext-policy attribute-based encryption and Boneh-Gentry-Waters' broadcast encryption was constructed. In the protocol, revocation can be done immediately without affecting any non-revoked users and does not require users to update keys periodically by interacting with the key authority. Compared with the existing ABAKA protocols, the protocol is more efficient in communication complexity. The protocol is provably secure in the standard model and modified ABCK model. The pro-tocol can also provide weak perfect forward secrecy and key compromise impersonation resilience.
Keywords:authentication  key agreement  attribute-based  revocation  standard model
本文献已被 CNKI 等数据库收录!
点击此处可从《通信学报》浏览原始摘要信息
点击此处可从《通信学报》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司    京ICP备09084417号-23

京公网安备 11010802026262号