DocumentCode
2374288
Title
A Hidden Credential Based Oblivious Automated Trust Negotiation Model
Author
Liao, Zhensong ; Jin, Hai ; Zou, Deqing
Author_Institution
Huazhong Univ. of Sci. & Technol., Wuhan
fYear
2007
fDate
24-26 Oct. 2007
Firstpage
247
Lastpage
253
Abstract
Automated trust negotiation (ATN) is an important means to establish trust between strangers through the exchange of digital credentials and access control policies specifying what credentials a stranger must submit in the open and distributed environment. While ATN brings convenience, there are still two issues unsolved successfully: 1) to protect the transmitting message; 2) to prevent the sensitive information leakage. Hidden credential can provide high security level to protect sensitive resources, policies and credentials from being attacked. Zero-knowledge is an important means to avoid leakage and can be used to protect the user´s private context and sensitive information from unauthorized inferences. If hidden credentials and zero-knowledge are well-combined and redesigned, they can jointly make ATN better. Based on these, a hidden credential based oblivious automated trust negotiation model (HBOA) is proposed in this paper. In the model, the negotiation information is carried by hidden credentials, which have the same secure level with elliptic curve. Zero-knowledge protocol is provided by Pedersen commitment scheme, which ensures that no sensitive information can be attained by authorized users. A practical example is given to prove its usability.
Keywords
authorisation; distributed processing; access control policies; digital credentials; hidden credential; information leakage; oblivious automated trust negotiation model; open distributed environment; Access control; Computers; Elliptic curve cryptography; Elliptic curves; Grid computing; Identity-based encryption; Information security; Middleware; Protection; Protocols;
fLanguage
English
Publisher
ieee
Conference_Titel
e-Business Engineering, 2007. ICEBE 2007. IEEE International Conference on
Conference_Location
Hong Kong
Print_ISBN
978-0-7695-3003-1
Type
conf
DOI
10.1109/ICEBE.2007.59
Filename
4402098
Link To Document