Authenticating mandatory access controls and preserving privacy for a high-assurance smart card

被引:0
|
作者
Scherzer, H
Canetti, R
Karger, PA
Krawczyk, H
Rabin, T
Toll, DC
机构
[1] IBM Deutschland GmbH, Secure Syst & Smart Cards, D-71032 Boblingen, Germany
[2] IBM Res Div, Thomas J Watson Res Ctr, Yorktown Hts, NY 10598 USA
[3] Technion Israel Inst Technol, Dept Elect Engn, IL-32000 Haifa, Israel
关键词
D O I
暂无
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
This paper presents an authentication protocol for high-assurance smart card operating systems that support download of mutually suspicious applications. Such a protocol is required to be part of the operating system, rather than the traditional smart card approach of allowing applications to do authentication, because strong authentication is essential for the operating system to protect one application from another. The protocol itself is based on the existing IKE protocol [13], used for authentication in IPSEC. What is new is the integration of an IKE-like protocol with authentication of mandatory secrecy and integrity access controls, the recognition that a single PKI-hierarchy cannot certify identity and all possible mandatory access rights, and the use of IKE to resolve privacy problems found in existing smart card authentication protocols.
引用
收藏
页码:181 / 200
页数:20
相关论文
共 35 条
  • [21] PAASH: A privacy-preserving authentication and fine-grained access control of outsourced data for secure smart health in smart cities
    Ogundoyin, Sunday Oyinlola
    Kamil, Ismaila Adeniyi
    JOURNAL OF PARALLEL AND DISTRIBUTED COMPUTING, 2021, 155 : 101 - 119
  • [22] A distributed privacy-preserving data aggregation scheme for smart grid with fine-grained access control
    Zhang, Wenzheng
    Liu, Shiyun
    Xia, Zhe
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2022, 66
  • [23] A Fine-Grained User-Divided Privacy-Preserving Access Control Protocol in Smart Watch
    Fang, Liming
    Li, Minghui
    Zhou, Lu
    Zhang, Hanyi
    Ge, Chunpeng
    SENSORS, 2019, 19 (09)
  • [24] Smart contract token-based privacy-preserving access control system for industrial Internet of Things
    Weizheng Wang
    Huakun Huang
    Zhimeng Yin
    Thippa Reddy Gadekallu
    Mamoun Alazab
    Chunhua Su
    Digital Communications and Networks, 2023, 9 (02) : 337 - 346
  • [25] Smart contract token-based privacy-preserving access control system for industrial Internet of Things
    Wang, Weizheng
    Huang, Huakun
    Yin, Zhimeng
    Gadekallu, Thippa Reddy
    Alazab, Mamoun
    Su, Chunhua
    DIGITAL COMMUNICATIONS AND NETWORKS, 2023, 9 (02) : 337 - 346
  • [26] An Efficient Data Aggregation Scheme in Privacy-Preserving Smart Grid Communications with a High Practicability
    Pan, Bofeng
    Zeng, Peng
    Choo, Kim-Kwang Raymond
    COMPLEX, INTELLIGENT, AND SOFTWARE INTENSIVE SYSTEMS, CISIS-2017, 2018, 611 : 677 - 688
  • [27] Fully privacy-preserving and revocable ID-based broadcast encryption for data access control in smart city
    Lai, Jianchang
    Mu, Yi
    Guo, Fuchun
    Susilo, Willy
    Chen, Rongmao
    PERSONAL AND UBIQUITOUS COMPUTING, 2017, 21 (05) : 855 - 868
  • [28] Fully privacy-preserving and revocable ID-based broadcast encryption for data access control in smart city
    Jianchang Lai
    Yi Mu
    Fuchun Guo
    Willy Susilo
    Rongmao Chen
    Personal and Ubiquitous Computing, 2017, 21 : 855 - 868
  • [29] Blockchain-Enabled and Data-Driven Smart Healthcare Solution for Secure and Privacy-Preserving Data Access
    Younis, Mohamed
    Lalouani, Wassila
    Lasla, Noureddine
    Emokpae, Lloyd
    Abdallah, Mohamed
    IEEE SYSTEMS JOURNAL, 2022, 16 (03): : 3746 - 3757
  • [30] Preserving Smart Objects Privacy through Anonymous and Accountable Access Control for a M2M-Enabled Internet of Things
    Hernandez-Ramos, Jose L.
    Bernal Bernabe, Jorge
    Victoria Moreno, M.
    Skarmeta, Antonio F.
    SENSORS, 2015, 15 (07) : 15611 - 15639