4.5 Article

Implementation and evaluation of a privacy-preserving distributed ABC scheme based on multi-signatures

出版社

ELSEVIER
DOI: 10.1016/j.jisa.2021.102971

关键词

Privacy-preservation; Identity management; Multi-signatures; Attribute-Based-Credentials; Access control

资金

  1. European Union [786725]
  2. AXA Postdoctoral Scholarship
  3. AXA Research Fund, France (Cyber-SecIoT project)
  4. H2020 Societal Challenges Programme [786725] Funding Source: H2020 Societal Challenges Programme

向作者/读者索取更多资源

The adoption of p-ABC systems in electronic services is still limited due to performance efficiency issues, lack of interoperability with standards, and reliance on a centralized architecture. This paper introduces a distributed and privacy-preserving identity management system with the PS-MS crypto scheme, providing remarkable privacy-preservation features and outperforming Identity Mixer system.
Despite the latest efforts to foster the adoption of privacy-enhancing Attribute-Based Credential (p-ABC) systems in electronic services, those systems are not yet broadly adopted. The main reasons behind this are performance efficiency issues, lack of interoperability with standards, and the centralized architectural scheme that relies on a unique Identity Provider (IdP) for credential issuance. To cope with these limitations, this paper describes the first implementation of the Pointcheval-Sanders Multi-Signatures (PS-MS) crypto scheme proposed by Camenisch et al. and its integration in a distributed and privacy-preserving identity management system proposed in OLYMPUS H2020 European research project. Our efficient implementation provides remarkable privacy-preservation features for identity management in online transactions leveraging p-ABC systems, including unforgeability, minimal disclosure of personal data through zero-knowledge proofs, unlinkability in online transactions and fully distributed credential issuance across different IdPs, thereby removing the IdP as a unique point of failure. The performance of the implementation has been exhaustively analyzed and evaluated with different curves, signers and number of attributes, and compared against Identity Mixer, the best known p-ABC system, outperforming significantly the credential issuance and zero-knowledge proving and verification processes (2-4 times less execution time).

作者

我是这篇论文的作者
点击您的名字以认领此论文并将其添加到您的个人资料中。

评论

主要评分

4.5
评分不足

次要评分

新颖性
-
重要性
-
科学严谨性
-
评价这篇论文

推荐

暂无数据
暂无数据