• DocumentCode
    2374288
  • Title

    A Hidden Credential Based Oblivious Automated Trust Negotiation Model

  • Author

    Liao, Zhensong ; Jin, Hai ; Zou, Deqing

  • Author_Institution
    Huazhong Univ. of Sci. & Technol., Wuhan
  • fYear
    2007
  • fDate
    24-26 Oct. 2007
  • Firstpage
    247
  • Lastpage
    253
  • Abstract
    Automated trust negotiation (ATN) is an important means to establish trust between strangers through the exchange of digital credentials and access control policies specifying what credentials a stranger must submit in the open and distributed environment. While ATN brings convenience, there are still two issues unsolved successfully: 1) to protect the transmitting message; 2) to prevent the sensitive information leakage. Hidden credential can provide high security level to protect sensitive resources, policies and credentials from being attacked. Zero-knowledge is an important means to avoid leakage and can be used to protect the user´s private context and sensitive information from unauthorized inferences. If hidden credentials and zero-knowledge are well-combined and redesigned, they can jointly make ATN better. Based on these, a hidden credential based oblivious automated trust negotiation model (HBOA) is proposed in this paper. In the model, the negotiation information is carried by hidden credentials, which have the same secure level with elliptic curve. Zero-knowledge protocol is provided by Pedersen commitment scheme, which ensures that no sensitive information can be attained by authorized users. A practical example is given to prove its usability.
  • Keywords
    authorisation; distributed processing; access control policies; digital credentials; hidden credential; information leakage; oblivious automated trust negotiation model; open distributed environment; Access control; Computers; Elliptic curve cryptography; Elliptic curves; Grid computing; Identity-based encryption; Information security; Middleware; Protection; Protocols;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    e-Business Engineering, 2007. ICEBE 2007. IEEE International Conference on
  • Conference_Location
    Hong Kong
  • Print_ISBN
    978-0-7695-3003-1
  • Type

    conf

  • DOI
    10.1109/ICEBE.2007.59
  • Filename
    4402098