Title :
Forward-Secure Certificate-Based Encryption: Definition and Generic Construction
Author :
Lu, Yang ; Li, Jiguo ; Xiao, Junmo
Author_Institution :
Coll. of Comput. & Inf. Eng., Hohai Univ., Nanjing
Abstract :
Certificate-based encryption (CBE) is a new paradigm which combines traditional public-key encryption (PKE) and identity-based encryption (IBE) while preserving their features. CBE provides an efficient implicit certificate mechanism to eliminate third-party queries for the certificate status and to simplify the certificate revocation problem. Therefore, CBE can be used to construct an efficient PKI requiring fewer infrastructures. In addition, it also solves the key escrow problem and key distribution problem inherent in IBE. In this paper, we introduce a new notion called Forward-Secure Certificate-Based Encryption. It preserves the advantages of CBE such as implicit certificate and no private key escrow. At the same time it also inherits the properties of the forward-secure public key encryption. We first formalize the definition and security model for forward-secure CBE. Then we propose a generic construction of forward-secure CBE and prove it to be secure against chosen plaintext attacks in the standard model. We also describe how our generic scheme can be enhanced to achieve security against adaptive chosen-ciphertext attacks in both the standard model and the random oracle model.
Keywords :
public key cryptography; adaptive chosen-ciphertext attacks; certificate-based encryption; forward-secure encryption; identity-based encryption; plaintext attacks; public-key encryption; Certification; Communication standards; Educational institutions; Identity-based encryption; Mobile handsets; Programmable logic arrays; Public key; Public key cryptography; Security;
Conference_Titel :
E-Business and Information System Security, 2009. EBISS '09. International Conference on
Conference_Location :
Wuhan
Print_ISBN :
978-1-4244-2909-7
Electronic_ISBN :
978-1-4244-2910-3
DOI :
10.1109/EBISS.2009.5137983