The Alphabet of ABCs
OUrsi Greg Alpár
greg.alpar@ou.nl
Open Universiteit & Radboud University April 4, 2017
1 / 22
The Alphabet of ABCs OUrsi Greg Alpr greg.alpar@ou.nl Open - - PowerPoint PPT Presentation
The Alphabet of ABCs OUrsi Greg Alpr greg.alpar@ou.nl Open Universiteit & Radboud University April 4, 2017 1 / 22 Outline Motivation: Identity in the digital world Attribute-based credentials and tricks Ongoing and future work 2 /
greg.alpar@ou.nl
1 / 22
2 / 22
3 / 22
4 / 22
5 / 22
6 / 22
◮ Authenticity ◮ Integrity ◮ Non-transferability
◮ Issuer unlinkability (blind signature, randomisation) ◮ Multi-show unlinkability (randomisation, zero-knowledge
7 / 22
8 / 22
◮ Encryption: message encryption to the recipient ◮ e.g. RSA enc: c = me mod n, where n = p · q ◮ Signature: signature verification ◮ e.g. RSA sig: s = m1/e mod n ◮ Authentication: proof of secret key
◮ Issuer (authority) linkability ◮ Multiple showing linkability 9 / 22
10 / 22
11 / 22
12 / 22
13 / 22
14 / 22
m1 1 ...R mℓ ℓ
m1 1 ...R mℓ ℓ
16 / 22
◮ U gives A (i.e. a part of the randomised signature) and ◮ U proves that she knows the exponents (i.e. a
17 / 22
18 / 22
19 / 22
◮ Epoch-based revocation (Lueks et al. Fast Revocation of
◮ g0,h0, x x xPK{r,...|h0 = g r 0 ∧ ABC ...} ◮ g1,h1, PK{r,...|h1 = g r 1 ∧ ABC ...}
◮ Secret sharing of the secret key between cloud and phone ◮ Computation of proofs without recovering secret key ◮ Implemented; however, yet to be written
◮ New scheme: Ringers et al. An efficient self-blindable
◮ Implementation is on the way 20 / 22
21 / 22
22 / 22