Bridging the Gap in Privacy-Preserving Revocation: Practical and Scalable Revocation of Mobile eIDs

Michael Hölzl, Michael Roland, Omid Mir, Rene Mayrhofer

Publikation: Beitrag in Buch/Bericht/TagungsbandKonferenzbeitragBegutachtung

5 Zitate (Scopus)

Abstract

Providing methods to anonymously validate the user's identity is essential in many applications of electronic identity (eID) systems. A feasible approach to realize such a privacy-preserving eID is the usage of group signature protocols or pseudonym-based signatures. However, providing a revocation mechanism that preserves privacy is often the bottleneck for the scalability of such schemes. In order to bridge this gap between practicability and privacy, we propose a scalable and efficient revocation scheme suitable for smart cards in a mobile eID architecture. By using a pseudo-random function, we derive one-time revocation tokens for the revocation check and generate proofs of validity using a new method referred to as disposable dynamic accumulators. Our scheme thereby preserves unlinkability and anonymity of the eID holder even beyond revocation and does not require online connectivity to a trusted party for the verification and revocation check.
OriginalspracheEnglisch
TitelProceedings of the 33rd Annual ACM Symposium on Applied Computing, SAC 2018
Herausgeber (Verlag)ACM Press
Seiten1601-1609
Seitenumfang9
ISBN (elektronisch)9781450351911
DOIs
PublikationsstatusVeröffentlicht - 9 Apr. 2018
Veranstaltung33rd ACM Symposium on Applied Computing - Pau, Frankreich
Dauer: 9 Apr. 201813 Apr. 2018
https://www.sigapp.org/sac/sac2018/

Publikationsreihe

NameProceedings of the ACM Symposium on Applied Computing

Workshop

Workshop33rd ACM Symposium on Applied Computing
Land/GebietFrankreich
OrtPau
Zeitraum09.04.201813.04.2018
Internetadresse

Schlagwörter

  • Electronic identities
  • privacy-preserving revocation
  • scalability
  • dynamic accumulators
  • smart cards

Fingerprint

Untersuchen Sie die Forschungsthemen von „Bridging the Gap in Privacy-Preserving Revocation: Practical and Scalable Revocation of Mobile eIDs“. Zusammen bilden sie einen einzigartigen Fingerprint.

Zitieren