Maintaining Integrity and Non-Repudiation in Secure Offline Documents

Maintaining Integrity and Non-Repudiation in Secure Offline Documents
复制标题

保持安全离线文档的完整性和不可否认性

DOI:
10.1145/3103010.3121038
复制
发表时间:
2017
期刊:
Proceedings of the 2017 ACM Symposium on Document Engineering
影响因子:
--
通讯作者:
C. Thao
C. Thao
中科院分区:
--
文献类型:
--
作者:
Ahmed S. Shatnawi;E. Munson;C. Thao

文献摘要

被引文献

相似文献

保护敏感数字文档(如健康记录、法律的报告、政府文档和金融资产)是一项关键且具有挑战性的任务。不可靠的互联网连接、病毒和受损的文件存储系统对这些文档造成了重大风险,并可能损害其完整性,特别是在以离线方式共享时跨域共享时。在本文中,我们提出了一个新的框架,保持离线文档的完整性,并提供了一个不可否认的安全功能,而不依赖于一个中央存储库的证书。该框架已作为Microsoft Word应用程序的插件实现。它是可移植的,因为插件是附加到文档本身的,它是可伸缩的,因为在生成文档时可以协作的用户数量没有固定的限制。我们的框架为文档版本历史中的每个更改提供完整性和不可否认性保证。
Securing sensitive digital documents (such as health records, legal reports, government documents, and financial assets) is a critical and challenging task. Unreliable Internet connections, viruses, and compromised file storage systems impose a significant risk on such documents and can compromise their integrity especially when shared across domains while they are shared in offline fashion. In this paper, we present a new framework for maintaining integrity in offline documents and provide a non-repudiation security feature without relying on a central repository of certificates. This framework has been implemented as a plug-in for the Microsoft Word application. It is portable because the plug-in is attached to the document itself and it is scalable because there are no fixed limits on the numbers of users who can collaborate in producing the document. Our framework provides integrity and non-repudiation guarantees for each change in the document's version history.