摘要
基于证书的密码体制在继承传统公钥基础设施和身份基密码体制优势的同时,避免了证书管理和密钥托管等不足.为了向基于证书的密钥封装机制提供匿名性和抗泄露攻击的能力,本文提出具有多接收者的抗泄露匿名密钥封装机制的形式化定义及抵抗泄露攻击的安全模型,并给出具体的实例化构造;同时基于判定的Diffie-Hellman假设的困难性,对上述实例泄露容忍的选择明文攻击安全性进行了证明.与现有相关构造相比,本文方案不仅具有匿名性、泄露容忍性和多接收者等更优的性能,而且当为多个用户生成封装密钥时具有更优的计算效率.
Certificate-based cryptography combines the best aspects of identity-based encryption(implicit certification management)and public key encryption(no key escrow).To provide the ability of broadcast communication and leakage resilience for the certificate-based key encapsulation mechanism,a new cryptographic primitive,called leakage-resilient key encapsulation mechanism with anonymity and multi-receiver,is proposed in this paper;the formal definition and the leakage-resilient security model of our proposal are also described.The concrete construction of the above cryptographic primitive is created,and the corresponding leakage-resilient chosen-plaintext attacks security is proved based on the hardness of the decisional Diffie-Hellman assumption.The corresponding analysis shows that our scheme has better performance in anonymity,leakage resilience,and multi-receiver and so on;also,better computational efficiency can be achieved when generating encapsulation keys for multiple users.
作者
周彦伟
韩宇
徐然
王佳
ZHOU Yan-wei;HAN Yu;XU Ran;WANG Jia(School of Computer Science,Shaanxi Normal University,Xi’an,Shaanxi 710119,China;Department of Information Construction and Management,Shaanxi Normal University,Xi’an,Shaanxi 710119,China)
出处
《电子学报》
EI
CAS
CSCD
北大核心
2023年第12期3431-3436,共6页
Acta Electronica Sinica
基金
国家自然科学基金(No.62272287)。
关键词
基于证书密码体制
密钥封装机制
多接收者
泄露容忍
certificate-based cryptography
key encapsulation mechanism
multi-receiver
leakage resilience