摘要
针对现有方案中存在不能防止KGC(密钥产生中心)冒充合法用户身份的问题,提出一种基于mIBE的密钥托管和身份撤销方案.该方案通过由KGC和PRA(私钥撤销机构)共同为用户颁发的身份密钥来确认其身份.基于盲技术使得KGC和PRA之间的保密信息可在公共通道上传输,解决了现有方案需额外增加安全通道的负担.
Impersonation attack was proposed to show that the references scheme was not free from the key escrow problem. Then an improvement was proposed. The improved scheme verified a user's identity by KGC (key generation center) and PRA (private key remove agencies) issuing identity key, which resolves user's key escrow problem of references. Otherwise, the improved scheme can make the secret information transmit between KGC and PRA without a secure channel based on a simple blinding technique, which resolves the burden of the additional secure channel.
出处
《华中科技大学学报(自然科学版)》
EI
CAS
CSCD
北大核心
2011年第5期76-78,共3页
Journal of Huazhong University of Science and Technology(Natural Science Edition)
基金
国家高技术研究发展计划资助项目(2007CDB311100)
北京工业大学青年科学基金资助项目(X1007016200802)
关键词
中介身份
身份撤销
密钥托管
密钥产生中心
私钥撤销机构
intermediary status
identity revocation
key escrow
key generation center (KGC)
private key remove agencies (PRA)