We use cookies to improve your experience with our site.

一个新的可撤销和可重代理的代理签名及其应用

A New Revocable and Re-Delegable Proxy Signature and Its Application

  • 摘要: 随着云计算和移动应用程序的普及,诸如在线音乐或音频流和车辆预订等按需服务现在广泛应用。为了有效地提供和管理服务,对于大型按需系统,通常有一个层次结构,服务提供商可以将其服务委托给顶级(如全国)代理,然后可以进一步委托服务到较低级别(如全区域)代理。安全(重)授权和撤销是这些系统最重要的组成之一。在本文中,我们调查了利用代理签名实现重新授权和撤销的实际解决方案。虽然文献中已经广泛研究了代理签名,但以前的解决方案都不能实现这两个特性。为弥补这个问题,我们介绍了可撤销和可重代理的代理签名的概念,支持有效撤销,并允许代理签名者将其签名权重新委托给其他代理签名者,而不与原始签名者进行交互。我们为这个新的原语定义正式的安全模型,并提出一个可以实现所有安全属性的有效方案。我们还提供一个安全的在线可撤销和重代理的车辆订购系统(RRVOS)作为我们提出的方案的应用之一。

     

    Abstract: With the popularity of cloud computing and mobile Apps, on-demand services such as on-line music or audio streaming and vehicle booking are widely available nowadays. In order to allow efficient delivery and management of the services, for large-scale on-demand systems, there is usually a hierarchy where the service provider can delegate its service to a top-tier (e.g., countrywide) proxy who can then further delegate the service to lower level (e.g., region-wide) proxies. Secure (re-)delegation and revocation are among the most crucial factors for such systems. In this paper, we investigate the practical solutions for achieving re-delegation and revocation utilizing proxy signature. Although proxy signature has been extensively studied in the literature, no previous solution can achieve both properties. To fill the gap, we introduce the notion of revocable and re-delegable proxy signature that supports efficient revocation and allows a proxy signer to re-delegate its signing right to other proxy signers without the interaction with the original signer. We define the formal security models for this new primitive and present an efficient scheme that can achieve all the security properties. We also present a secure on-line revocable and re-delegate vehicle ordering system (RRVOS) as one of the applications of our proposed scheme.

     

/

返回文章
返回