Authenticating mandatory access controls and preserving privacy for a high-assurance smart card

被引:0
|
作者
Scherzer, H
Canetti, R
Karger, PA
Krawczyk, H
Rabin, T
Toll, DC
机构
[1] IBM Deutschland GmbH, Secure Syst & Smart Cards, D-71032 Boblingen, Germany
[2] IBM Res Div, Thomas J Watson Res Ctr, Yorktown Hts, NY 10598 USA
[3] Technion Israel Inst Technol, Dept Elect Engn, IL-32000 Haifa, Israel
关键词
D O I
暂无
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
This paper presents an authentication protocol for high-assurance smart card operating systems that support download of mutually suspicious applications. Such a protocol is required to be part of the operating system, rather than the traditional smart card approach of allowing applications to do authentication, because strong authentication is essential for the operating system to protect one application from another. The protocol itself is based on the existing IKE protocol [13], used for authentication in IPSEC. What is new is the integration of an IKE-like protocol with authentication of mandatory secrecy and integrity access controls, the recognition that a single PKI-hierarchy cannot certify identity and all possible mandatory access rights, and the use of IKE to resolve privacy problems found in existing smart card authentication protocols.
引用
收藏
页码:181 / 200
页数:20
相关论文
共 35 条
  • [31] Boosting the Performance of High-Assurance Cryptography: Parallel Execution and Optimizing Memory Access in Formally-Verified Line-Point Zero-Knowledge
    Dittmer, Samuel
    Eldefrawy, Karim
    Graham-Lengrand, Stephane
    Lu, Steve
    Ostrovsky, Rafail
    Pereira, Vitor
    PROCEEDINGS OF THE 2023 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, CCS 2023, 2023, : 2098 - 2112
  • [32] High Assurance Cybersecurity Plan Templates for Nuclear Facilities Two-dimensional layering of mutually orthogonal security controls for a high-assurance cybersecurity protection of critical computer-based systems in the post-Stuxnet era
    Zavarsky, Pavol
    2014 INTERNATIONAL CONFERENCE ON INFORMATION SOCIETY (I-SOCIETY 2014), 2014, : 40 - 44
  • [33] Privacy-preserving protocol for high-frequency smart meters using reversible watermarking and Paillier encryption
    Kabir, Farzana
    Araghi, Tanya Koohpayeh
    Megias, David
    COMPUTERS & ELECTRICAL ENGINEERING, 2024, 119
  • [34] Privacy-preserving smart IoT-based healthcare big data storage and self-adaptive access control system
    Yang, Yang
    Zheng, Xianghan
    Guo, Wenzhong
    Liu, Ximeng
    Chang, Victor
    INFORMATION SCIENCES, 2019, 479 : 567 - 592
  • [35] Privacy-Preserving Honeypot-Based Detector in Smart Grid Networks: A New Design for Quality-Assurance and Fair Incentives Federated Learning Framework
    Albaseer, Abdullatif
    Abdallah, Mohamed
    2023 IEEE 20TH CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE, CCNC, 2023,