...
首页> 外文期刊>Mobile networks & applications >Privacy-enhanced, Attack-resilient Access Control in Pervasive Computing Environments with Optional Context Authentication Capability
【24h】

Privacy-enhanced, Attack-resilient Access Control in Pervasive Computing Environments with Optional Context Authentication Capability

机译:具有可选上下文身份验证功能的普适计算环境中的增强隐私,具有攻击力的访问控制

获取原文
获取原文并翻译 | 示例
           

摘要

In pervasive computing environments (PCEs), privacy and security are two important but contradictory objectives. Users enjoy services provided in PCEs only after their privacy issues being sufficiently addressed. That is, users could not be tracked down for wherever they are and whatever they are doing. However, service providers always want to authenticate the users and make sure they are accessing only authorized services in a legitimate way. In PCEs, such user authentication may include context authentication in addition to the entity authentication. In this paper, we propose a novel privacy enhanced anonymous authentication and access control scheme to secure the interactions between mobile users and services in PCEs with optional context authentication capability. The proposed scheme seamlessly integrates two underlying cryptographic primitives, blind signature and hash chain, into a highly flexible and lightweight authentication and key establishment protocol. It provides explicit mutual authentication and allows multiple current sessions between a user and a service, while allowing the user to anonymously interact with the service. The proposed scheme is also designed to be DoS resilient by requiring the user to prove her legitimacy when initializing a service session.
机译:在普适计算环境(PCE)中,隐私和安全性是两个重要但相互矛盾的目标。用户只有充分解决其隐私问题后,才能享受PCE中提供的服务。也就是说,无论用户身在何处,无论他们在做什么,都无法对其进行跟踪。但是,服务提供商始终希望对用户进行身份验证,并确保他们仅以合法方式访问授权的服务。在PCE中,此类用户身份验证除了实体身份验证外,还可以包括上下文身份验证。在本文中,我们提出了一种新颖的隐私增强匿名身份验证和访问控制方案,以通过可选的上下文身份验证功能来保护PCE中移动用户与服务之间的交互。所提出的方案将两个基础的加密原语(盲签名和哈希链)无缝集成到高度灵活,轻量级的身份验证和密钥建立协议中。它提供了显式的相互身份验证,并允许用户和服务之间进行多个当前会话,同时允许用户与服务进行匿名交互。通过要求用户在初始化服务会话时证明其合法性,该提议的方案还被设计为具有DoS弹性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号