摘要
为了解决基于身份加密(IBE)用户私钥的安全分发所存的身份认证、私钥安全传输和私钥托管问题,提出一种基于身份证书的IBE私钥分发协议.该协议通过可信机构(TA)颁发的身份证书验证用户的身份,采用一种盲技术保证了用户私钥在公共通道上传输的安全性以及基于多机构方式解决了用户私钥托管问题,且与Lee B协议相比至少减少了2t运算量.
An identity-based encryption (IBE) private key issuing protocol based on attestation identity certificate was proposed to resolve the security problem of user private key issued such as user identity authentication in private issuing, the private security transmitting and the private escrow. The proposed scheme verifies a user's identity by trust authority (TA) issuing attestation identity certificate, uses a simple blinding technique to eliminate the secure channel and multiple authorities approach to avoid the key escrow problem. Moreover, the scheme saves at least 2 t operations in comparison to Lee B et al's protocol.
出处
《北京邮电大学学报》
EI
CAS
CSCD
北大核心
2008年第4期70-72,134,共4页
Journal of Beijing University of Posts and Telecommunications
基金
北京工业大学博士科研启动基金项目(52007016200704)
关键词
基于身份加密
私钥分发
身份证书
identity-based encryption
private key issuing
attestation identity certificate