A fuzzy vault scheme

被引:486
作者
Juels, A
Sudan, M
机构
[1] RSA Labs, Bedford, MA 01730 USA
[2] MIT, Cambridge, MA 02139 USA
关键词
authentication; cryptography; error-correting codes;
D O I
10.1007/s10623-005-6343-z
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
We describe a simple and novel cryptographic construction that we refer to as a fuzzy vault. A player Alice may place a secret value kappa degrees in a fuzzy vault and "lock" it using a set A of elements from some public universe U. If Bob tries to "unlock" the vault using a set B of similar length, he obtains kappa degrees only if B is close to A, i.e., only if A and B overlap substantially. In constrast to previous constructions of this flavor, ours possesses the useful feature of order invariance, meaning that the ordering of A and B is immaterial to the functioning of the vault. As we show, our scheme enjoys provable security against a computationally unbounded attacker. Fuzzy vaults have potential application to the problem of protecting data in a number of real-world, error-prone environments. These include systems in which personal information serves to authenticate users for, e.g., the purposes of password recovery, and also to biometric authentication systems, in which readings are inherently noisy as a result of the refractory nature of image capture and processing.
引用
收藏
页码:237 / 257
页数:21
相关论文
共 30 条
[1]  
ALABBADI M, 1994, LNCS, V917, P238
[2]  
[Anonymous], 1998, CRACK DES SECR ENCR
[3]  
[Anonymous], P WCC99 WORKSH COD C
[4]  
Bennett C. H., 1992, Journal of Cryptology, V5, P3, DOI 10.1007/BF00191318
[5]  
BENNETT CH, 1991, CRIPTO 91, V576, P351
[6]  
Berlekamp E. R., 1968, ALGEBRAIC CODING THE
[7]  
Bleichenbacher D, 2000, LECT NOTES COMPUT SC, V1807, P53
[8]   A fair and efficient solution to the socialist millionaires' problem [J].
Boudot, F ;
Schoenmakers, B ;
Traoré, J .
DISCRETE APPLIED MATHEMATICS, 2001, 111 (1-2) :23-36
[9]  
Boyko V, 2000, LECT NOTES COMPUT SC, V1807, P156
[10]  
Crepeau C., 1997, Advances in Cryptology - EUROCRYPT '97. International Conference on the Theory and Application of Cryptographic Techniques Proceedings, P306