distributed identity based short linkable ring signature
play

Distributed Identity Based Short Linkable Ring Signature Kasra - PowerPoint PPT Presentation

Distributed Identity Based Short Linkable Ring Signature Kasra EdalatNejad Prof. Bryan Ford DEcentralized and DIstributed Systems Goal Anonymity Accountability Usability 2 Ring Signature Anonymous Spontaneous 3 Linkable Ring


  1. Distributed Identity Based Short Linkable Ring Signature Kasra EdalatNejad Prof. Bryan Ford DEcentralized and DIstributed Systems

  2. Goal ● Anonymity ● Accountability ● Usability 2

  3. Ring Signature Anonymous Spontaneous 3

  4. Linkable Ring Signature ● Event tag ● Accountable ● Linear size 4

  5. Cryptographic Accumulator ● Make a short representation ● Not a compresion 5

  6. Accumulator ● Accumulate set(X): V ● Generate witness: W ● Check membership: (x, W, V) 6

  7. Additional properties ● Dynamic ● Authority 7

  8. Bilinear Pairing (Nguyen) ● Master Secret Key: s ● Publicly computable 8

  9. Bilinear Pairing (Nguyen) ● With Authority: Dynamic ○ Authority ○ ● No Authority: Trusted setup ○ Not efficient ○ 9

  10. Accumulator VS Ring Signature 10

  11. Short Linkable Ring Signature ● Membership in ring ● Knowing private key ● Correct link tag 11

  12. Identity Based Cryptography ● Public key is based on name ● No Certificate Authority ● Authority generate private key ● Key escrow 12

  13. Bilinear pairing SLRS ● Membership: Nguyen’s Accumulator ● Knowledge of private key: Sakai-Kasahara IBC ○ ○ ● Link 13

  14. Secret Sharing: Direct ● Shamir polynomial ● Distributed key generation ● Compute: 14

  15. Secret sharing: inverse ● Compute: ● Secure Multiparty Computation ● Online participation for each request ● Not efficient 15

  16. Distributed IBC ● Use SS inverse ● Distributed trust 16

  17. Distributed Nguyen’s Acc ● Trusted setup ● Distributed trust SS Direct: Week dynamic ○ SS Inverse: Fully dynamic ○ 17

  18. Distributed Accumulator None SS Direct SS Inverse Accumulate: Witness generation No check witness: Add member Remove member 18

  19. Idea ● Hierarchical Accumulator Improve efficiency in non-trusted model ○ ● Hierarchical SLRS Different privacy levels ○ Set management ○ 19

  20. Voting ● Different levels: City, Canton, Country ● Autonomous sets ● Unique identity link across levels 20

  21. PoP Party ● Merging parties ● Removing parties ● Attribute based parties ● Multiple attributes for a party ● Distinct parties? Same IBC authority? 21

  22. Challenges ● Efficiency ● Efficiency ● Efficiency 22

  23. Summary ● Accumulator ● Linkable Ring Signature ● Identity Based Cryptography ● Distributed Authority ● Distributed Identity Based Short Linkable Ring Signature (DIBSLRS) 23

  24. RSA ● Accumulator ● Short Linkable Ring Signature (SLRS) ● Authority ● Certificate public key 24

Download Presentation
Download Policy: The content available on the website is offered to you 'AS IS' for your personal information and use only. It cannot be commercialized, licensed, or distributed on other websites without prior consent from the author. To download a presentation, simply click this link. If you encounter any difficulties during the download process, it's possible that the publisher has removed the file from their server.

Recommend


More recommend