On the utility of distributed cryptography in P2P and MANETs: the case of membership control

On the utility of distributed cryptography in P2P and MANETs: the case of membership control
复制标题

DOI:
10.1109/icnp.2003.1249783
复制
发表时间:
2003-11
期刊:
11th IEEE International Conference on Network Protocols, 2003. Proceedings.
影响因子:
--
通讯作者:
Maithili Narasimha;G. Tsudik;J. Yi
Maithili Narasimha;G. Tsudik;J. Yi
中科院分区:
其他
文献类型:
--
作者:
Maithili Narasimha;G. Tsudik;J. Yi

文献摘要

被引文献

相似文献

对等系统支持高效的资源聚合,并且由于它们不依赖于任何集中式授权机构,因此具有内在的可伸缩性。然而,缺乏一个集中的权威机构引发了许多与安全相关的挑战。在这些系统中提供高效的安全服务是一个活跃的研究课题,受到了安全研究界的广泛关注。在本文中,我们探索了在对等环境中(基于Internet和MANET)使用门限密码术来以健壮和容错的方式提供诸如认证、证书颁发和访问控制等安全服务。门限密码通过在整个组中分发信任来提供高可用性,因此是安全对等组的一种有吸引力的解决方案。我们的工作研究了门限密码学在对等系统中用于成员控制的适用性。在这个过程中,我们发现一个有趣的提议方案包含一个不幸的(但严重的)缺陷。然后,我们提出了一个替代解决方案,并对其性能进行了测量。更重要的是,我们的初步工作对在某些对等环境中使用(看似有吸引力的)门限密码术的实用性甚至可行性提出了一定程度的怀疑。
Peer-to-peer systems enable efficient resource aggregation and are inherently scalable since they do not depend on any centralized authority. However, lack of a centralized authority prompts many security-related challenges. Providing efficient security services in these systems is an active research topic which is receiving much attention in the security research community. In this paper, we explore the use of threshold cryptography in peer-to-peer settings (both Internet- and MANET-based) to provide, in a robust and fault tolerant fashion, security services such as authentication, certificate issuance and access control. Threshold cryptography provides high availability by distributing trust throughout the group and is, therefore, an attractive solution for secure peer-groups. Our work investigates the applicability of threshold cryptography for membership control in peer-to-peer systems. In the process, we discover that one interesting proposed scheme contains an unfortunate (yet serious) flaw. We then present an alternative solution and its performance measurements. More importantly, our preliminary work casts a certain degree of skepticism on the practicality and even viability of using (seemingly attractive) threshold cryptography in certain peer-to-peer settings.