DISTRIBUTED USER IDENTIFICATION BY ZERO-KNOWLEDGE ACCESS RIGHTS PROVING

被引:0
作者
DOMINGOFERRER, J [1 ]
机构
[1] UNIV AUTONOMA BARCELONA,DEPT INFORMAT,E-08193 BARCELONA,SPAIN
关键词
DISTRIBUTED IDENTIFICATION; ACCESS CONTROL; COMPUTER SECURITY; ZERO-KNOWLEDGE PROOFS; DISTRIBUTED SYSTEMS;
D O I
10.1016/0020-0190(91)90116-Y
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A scheme for identifying the rights of users to access files in a computer network with many servers is presented. Users are granted rights by an authority, and serves need only a certified list of available access rights in order to perform access control. A server stores no information about the users, neither access matrix nor passwords-user portability-, which enables the authority to perform user registration, rights granting and rights revocation independently of servers; moreover, the latter two are public operations in the clear. The number of rights shared by more than one user throughout the network is a lower bound for the number of secret pieces held by each user, but his unshared rights can be increased indefinitely without changing or increasing his secret information. Rights possession proofs are zero-knowledge and simultaneous.
引用
收藏
页码:235 / 239
页数:5
相关论文
共 4 条
  • [1] CHAUM D, 1987, P EURO CRYPT 87, P127
  • [2] Koblitz N., 1987, COURSE NUMBER THEORY
  • [3] HOW TO SHARE A SECRET
    SHAMIR, A
    [J]. COMMUNICATIONS OF THE ACM, 1979, 22 (11) : 612 - 613
  • [4] [No title captured]