Multicast Key Agreement, Revisited
Multicast Key Agreement, Revisited
复制标题
重新审视组播密钥协议
DOI:
--
复制
发表时间:
2021
期刊:
影响因子:
--
通讯作者:
Yi Tang
中科院分区:
文献类型:
--
作者:
Alexander Bienstock;Y. Dodis;Yi Tang
. Multicast Key Agreement (MKA) is a long-overlooked natural primitive of large practical interest. In traditional MKA, an omniscient group manager privately distributes secrets over an untrusted network to a dynamically-changing set of group members. The group members are thus able to derive shared group secrets across time, with the main security requirement being that only current group members can derive the current group secret. There indeed exist very efficient MKA schemes in the literature that utilize symmetric-key cryptography. However, they lack formal security analyses, efficiency analyses regarding dynamically changing groups, and more modern, robust security guarantees regarding user state leakages: forward secrecy (FS) and post-compromise security (PCS). The former ensures that group secrets prior to state leakage remain secure, while the latter ensures that after such leakages, users can quickly recover security of group secrets via normal protocol operations.