Title :
Verifiable secret redistribution for archive systems
Author :
Wong, Theodore M. ; Wang, Chenxi ; Wing, Jeannette M.
Author_Institution :
Carnegie Mellon Univ., Pittsburgh, PA, USA
Abstract :
We present a new verifiable secret redistribution protocol for threshold sharing schemes that forms a key component of a proposed archival storage system. Our protocol supports redistribution from (m,n) to (m´,n´) threshold sharing schemes without requiring reconstruction of the original data. The design is motivated by archive systems for which the added security of threshold sharing of data must be accompanied by the flexibility of dynamic shareholder changes. Our protocol enables the dynamic addition or removal of shareholders, and also guards against mobile adversaries. We observe that existing protocols either cannot be extended readily to allow redistribution between different access structures, or have vulnerabilities that allow faulty old shareholders to distribute invalid shares to new shareholders. Our primary contribution is that in our protocol, new shareholders can verify the validity of their shares after redistribution between different access structures.
Keywords :
cryptography; transport protocols; archival storage system; dynamic shareholder changes; invalid shares; mobile adversaries; threshold sharing schemes; verifiable secret redistribution protocol; Access protocols; Computer crime; Cryptography; Data security; Delay; Fault tolerance; Fault tolerant systems; File servers; Government; Information retrieval;
Conference_Titel :
Security in Storage Workshop, 2002. Proceedings. First International IEEE
Print_ISBN :
0-7695-1888-5
DOI :
10.1109/SISW.2002.1183515