A novel privacy preserving authentication and access control scheme for pervasive computing environments

被引:74
|
作者
Ren, Kui [1 ]
Lou, Wenjing
Kim, Kwangjo
Deng, Robert
机构
[1] Worcester Polytech Inst, Dept Elect & Comp Engn, Worcester, MA 01609 USA
[2] Informat & Commun Univ, Taejon 305732, South Korea
[3] Singapore Management Univ, Sch Informat Syst, Singapore 188065, Singapore
关键词
access control; authentication; pervasive computing environments (PCEs); security;
D O I
10.1109/TVT.2006.877704
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Privacy and security are two important but seemingly contradictory objectives in a pervasive computing environment (PCE). On one hand, service providers want to authenticate legitimate users and make sure they are accessing their authorized services in a legal way. On the other hand, users want to maintain the necessary privacy without being tracked down for wherever they are and whatever they are doing. In this paper, a novel privacy preserving authentication and access control scheme to secure the interactions between mobile users and services in PCEs is proposed. The proposed scheme seamlessly integrates two underlying cryptographic primitives, namely blind signature and hash chain, into a highly flexible and lightweight authentication and key establishment protocol. The scheme provides explicit mutual authentication between a user and a service while allowing the user to anonymously interact with the service. Differentiated service access control is also enabled in the proposed scheme by classifying mobile users into different service groups. The correctness of the proposed authentication and key establishment protocol is formally verified based on Burrows-Abadi-Needham logic.
引用
收藏
页码:1373 / 1384
页数:12
相关论文
共 50 条