DocumentCode
1436217
Title
Access control and signatures via quorum secret sharing
Author
Naor, Moni ; Wool, Avishai
Author_Institution
Dept. of Appl. Math. & Comput. Sci., Weizmann Inst. of Sci., Rehovot, Israel
Volume
9
Issue
9
fYear
1998
fDate
9/1/1998 12:00:00 AM
Firstpage
909
Lastpage
922
Abstract
We suggest a method of controlling the access to a secure database via quorum systems. A quorum system is a collection of sets (quorums) every two of which have a nonempty intersection. Quorum systems have been used for a number of applications in the area of distributed systems. We propose a separation between access servers, which are protected and trustworthy, but may be outdated, and the data servers, which may all be compromised. The main paradigm is that only the servers in a complete quorum can collectively grant (or revoke) access permission. The method we suggest ensures that, after authorization is revoked, a cheating user Alice will not be able to access the data even if many access servers still consider her authorized and even if the complete raw database is available to her. The method has a low overhead in terms of communication and computation. It can also be converted into a distributed system for issuing secure signatures. An important building block in our method is the use of secret sharing schemes that realize the access structures of quorum systems. We provide several efficient constructions of such schemes which may be of interest in their own right
Keywords
authorisation; cryptography; access servers; data servers; quorum secret sharing; quorum systems; secret sharing schemes; secure database; Access control; Access protocols; Availability; Computer Society; Control systems; Cryptography; Databases; Licenses; Protection; Wool;
fLanguage
English
Journal_Title
Parallel and Distributed Systems, IEEE Transactions on
Publisher
ieee
ISSN
1045-9219
Type
jour
DOI
10.1109/71.722223
Filename
722223
Link To Document