引用本文:乔子芮,杨启良,周彦伟,杨波,夏喆,张明武.CCA安全的抗连续泄露的广播密钥封装机制.软件学报,2023,34(2):818-832
【打印本页】   【下载PDF全文】   查看/发表评论  【EndNote】   【RefMan】   【BibTex】
←前一篇|后一篇→ 过刊浏览    高级检索
本文已被:浏览 1299次   下载 2716 本文二维码信息
码上扫一扫!
分享到: 微信 更多
CCA安全的抗连续泄露的广播密钥封装机制
乔子芮1, 杨启良1, 周彦伟1,2,3, 杨波1, 夏喆4, 张明武2,3
1.陕西师范大学 计算机科学学院, 陕西 西安 710062;2.广西密码学与信息安全重点实验室(桂林电子科技大学), 广西 桂林 541004;3.密码科学技术国家重点实验室, 北京 100878;4.武汉理工大学 计算机科学与技术学院, 湖北 武汉 430070
摘要:
传统公钥基础设施中的证书复杂管理和身份基密码体制中的密钥托管等问题在基于证书的密码体制下得到了很好的解决,因此无证书密码体制近年来得到了广泛关注.此外,在现实应用中,攻击者基于冷启动、边信道等各种各样的泄露攻击获得密码机制内部敏感状态(如秘密钥等)的泄露信息,导致在传统理想模型下被证明安全的密码机制不再具有相应的安全性.此外,由于广播通信模式具有较高的消息通信效率,多个具有广播通信功能的密码原语相继被提出.针对基于证书密钥封装机制对泄露容忍性和广播通信等性能的需求,提出抗泄露的基于证书的广播密钥封装机制的实例化构造,并基于判定的Diffie-Hellman困难性假设对其选择密文攻击下的安全性进行了证明.此外,为进一步增强该构造的实用性,研究了广播密钥封装机制的连续泄露容忍性,通过定期更新用户密钥的方式实现了对连续泄露攻击的抵抗目标.与现有工作的分析对比表明,该构造在保证安全性可证明的基础上,不仅实现了抵抗泄露攻击和广播通信的功能,而且拥有较高的计算效率.
关键词:  基于证书的密钥封装机制  广播通信  连续泄露容忍性  选择密文攻击
DOI:10.13328/j.cnki.jos.006398
分类号:TP309
基金项目:国家重点研发计划(2017YFB0802000);国家自然科学基金(62272287,61802242,U2001205);广西密码学与信息安全重点实验室研究课题(GCIS202108);河南省网络密码技术重点实验室研究课题(LNCT2021-A04)
Continuous Leakage-resilient Broadcast Key-encapsulation Mechanism with CCA Security
QIAO Zi-Rui1, YANG Qi-Liang1, ZHOU Yan-Wei1,2,3, YANG Bo1, XIA Zhe4, ZHANG Ming-Wu2,3
1.School of Computer Science, Shaanxi Normal University, Xi'an 710062, China;2.Guangxi Key Laboratory of Cryptography and Information Security (Guilin University of Electronic Technology), Guilin 541004, China;3.State Key Laboratory of Cryptology, Beijing 100878, China;4.School of Computer Science and Technology, Wuhan University of Technology, Wuhan 430070, China
Abstract:
Certificate-based cryptography which is attracted great interest can solve the certificate management issue of the traditional public-key cryptography system, at the same time, which can also avoid the key escrow in the identity-based cryptography, thus, it has attracted attention of cryptography researchers. The traditional security models assume that any adversary cannot obtain the leakage information on the internal secret states, such as secret keys, however, some leakage can be leaked through various leakage attacks in the actual environment. In addition, many cryptographic schemes with broadcast communication function were created, because broadcast communication has higher efficiency of message transmission. To further provide leakage resilience and broadcast communication for certificate-based broadcast key encapsulation mechanism (CB-BKEM), a concrete construction of CB-BKEM is proposed, and the leakage-resilient chosen-ciphertext attacks security is proved based on decisional Diffie-Hellman assumption. To further improve the practicability of CB-BKEM, continuous leakage-resilient CB-BKEM is researched, and the continuous leakage resilience of CB-BKEM can be obtained by performing key update. The performance analysis shows that the proposed construction has higher computational efficiency while maintaining the provable security, the leakage resilience and the broadcast communication.
Key words:  certificate-based key-encapsulation mechanism  broadcast communication  continuous leakage resilience  chosen-ciphertext attacks

引用本文:
【打印本页】   【下载PDF全文】   查看/发表评论  【EndNote】   【RefMan】   【BibTex】
←前一篇|后一篇→ 过刊浏览    高级检索
本文已被:浏览次   下载  
分享到: 微信 更多
摘要:
关键词:  
DOI:
分类号:
基金项目:
Abstract:
Key words: