Anonymous authentication scheme for XML security standard with Refreshable Tokens
Anonymous authentication scheme for XML security standard with Refreshable Tokens
复制标题
可刷新令牌的 XML 安全标准匿名认证方案
DOI:
10.1145/968559.968573
复制
发表时间:
2003
期刊:
影响因子:
--
通讯作者:
H. Imai
中科院分区:
文献类型:
--
作者:
R. Shigetomi;Akira Otsuka;H. Imai
Anonymity is a highly desired feature in Internet transactions. On the other hand, unconditional anonymity may contain some traps. For instance, it may cause irresponsible, or even criminal, use of the Internet. Thus, it would be desirable to have revocable anonymity in our internet applications. In this work, we suggest an anonymous authentication scheme for WS-Security. Our scheme assures the user's anonymity but the server can check, and even reject without unveiling the user's identification the user's right for accessing a specific service. The main tools which we use to achieve our rejectable anonymous protocols are "Refreshable Tokens". Our scheme does not require any active trusted third party in contrast to previous works in the literature. However, in situations where the identity of a user suspect of malicious act is required, the server could be easily to deny the user's service.