{"title":"具有自我认证身份的分布式私钥生成方案","authors":"Yongming Xie, Guojun Wang","doi":"10.1109/TrustCom.2011.65","DOIUrl":null,"url":null,"abstract":"In an identity-based encryption (IBE) system, a private-key generator (PKG) is assumed to be credible, which takes charge of identity authentication and private-key issuing for users. However, the reliability of IBE may be questioned since this assumption does not always hold. In this paper, we propose a new distributed private-key generation scheme with self-certified identity (SCI-DKG) which does not need any PKG. SCI-DKG takes advantage of distributed private key generation and self certification to remove PKG from IBE. Comparing with the existing IBE schemes, a user and his identity can be independently authenticated through his blind digital ID (BDID) card and identity signature. In the meanwhile, a user can extract private keys from other users' sharing packets containing secret shares, partial public parameters and BDID cards. The proposed scheme significantly extends IBE without involvement of PKGs, and provides a promising solution for applications where PKG is not always available. Theoretical analysis demonstrates that our scheme is secure and effective.","PeriodicalId":289926,"journal":{"name":"2011IEEE 10th International Conference on Trust, Security and Privacy in Computing and Communications","volume":"8 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2011-11-16","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Distributed Private-Key Generation Scheme with Self-Certified Identity\",\"authors\":\"Yongming Xie, Guojun Wang\",\"doi\":\"10.1109/TrustCom.2011.65\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"In an identity-based encryption (IBE) system, a private-key generator (PKG) is assumed to be credible, which takes charge of identity authentication and private-key issuing for users. However, the reliability of IBE may be questioned since this assumption does not always hold. In this paper, we propose a new distributed private-key generation scheme with self-certified identity (SCI-DKG) which does not need any PKG. SCI-DKG takes advantage of distributed private key generation and self certification to remove PKG from IBE. Comparing with the existing IBE schemes, a user and his identity can be independently authenticated through his blind digital ID (BDID) card and identity signature. In the meanwhile, a user can extract private keys from other users' sharing packets containing secret shares, partial public parameters and BDID cards. The proposed scheme significantly extends IBE without involvement of PKGs, and provides a promising solution for applications where PKG is not always available. Theoretical analysis demonstrates that our scheme is secure and effective.\",\"PeriodicalId\":289926,\"journal\":{\"name\":\"2011IEEE 10th International Conference on Trust, Security and Privacy in Computing and Communications\",\"volume\":\"8 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2011-11-16\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2011IEEE 10th International Conference on Trust, Security and Privacy in Computing and Communications\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/TrustCom.2011.65\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2011IEEE 10th International Conference on Trust, Security and Privacy in Computing and Communications","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/TrustCom.2011.65","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0
摘要
在基于身份的加密(IBE)系统中,假定私钥生成器(PKG)是可信的,它负责用户的身份验证和私钥颁发。然而,IBE的可靠性可能会受到质疑,因为这一假设并不总是成立。本文提出了一种新的具有自我认证身份的分布式私钥生成方案(SCI-DKG),该方案不需要任何PKG,它利用分布式私钥生成和自我认证来消除IBE中的PKG。与现有的IBE方案相比,通过BDID (blind digital ID)卡和身份签名可以独立地对用户及其身份进行认证。同时,用户可以从其他用户包含秘密共享、部分公共参数和BDID卡的共享数据包中提取私钥。提出的方案在不涉及PKG的情况下显著扩展了IBE,并为PKG不总是可用的应用提供了一个有希望的解决方案。理论分析表明,该方案安全有效。
Distributed Private-Key Generation Scheme with Self-Certified Identity
In an identity-based encryption (IBE) system, a private-key generator (PKG) is assumed to be credible, which takes charge of identity authentication and private-key issuing for users. However, the reliability of IBE may be questioned since this assumption does not always hold. In this paper, we propose a new distributed private-key generation scheme with self-certified identity (SCI-DKG) which does not need any PKG. SCI-DKG takes advantage of distributed private key generation and self certification to remove PKG from IBE. Comparing with the existing IBE schemes, a user and his identity can be independently authenticated through his blind digital ID (BDID) card and identity signature. In the meanwhile, a user can extract private keys from other users' sharing packets containing secret shares, partial public parameters and BDID cards. The proposed scheme significantly extends IBE without involvement of PKGs, and provides a promising solution for applications where PKG is not always available. Theoretical analysis demonstrates that our scheme is secure and effective.