TY - GEN
T1 - A proposal of efficient scheme of key management using ID-based encryption and biometrics
AU - Izumi, Akitoshi
AU - Ueshige, Yoshifumi
AU - Sakurai, Kouichi
PY - 2007/12/31
Y1 - 2007/12/31
N2 - In the information exchange through network, the security risks always exists, that is eavesdropping, defacing, and spoofing by the attacker. Crypthography, digital signature, and authentication are techniques oppose such attacker. PKI (Public Key Infrastructure) enables such technique. In PKI, the public key certificate is used. This public key certificate is issued and distributed by certificate authority, but we think that the updating of expired certificate etc. are very costly for the user. It seems that the management of secret key is more serious problem than that of public key certificate for the user. As above, in the system using public key cryptography, the managements of public key and secret key are very important problem. In order to solve the above problems, we propose the scheme that stores protected secret key which is made by combination of biometrics and secret key in the smartcard in the system which uses ID-based cryptography. In our proposal, TA (Trusted Authority) protects the secret key using biometrics information extracted from owner of that secret key and stores it as protected secret key in smartcard which has fingerprint reading function. And we must extract the same biometrics information as that is extracted at enrollment. So, we extract the helper data from biometrics information at making protected secret key and store it in smartcard. The user can restore the secret key form protected secret key by presenting his fingerprint to smart-card that has protected secret key and helper data. In our scheme, the template is not need for authentication. So, the problem of the leakes of the template arise in traditional baiometric authentication won't arise. Also we proposed the concrete operation scheme in which our scheme is used. We show that the cost of the public key and secret key management will be reduced by using this operation scheme.
AB - In the information exchange through network, the security risks always exists, that is eavesdropping, defacing, and spoofing by the attacker. Crypthography, digital signature, and authentication are techniques oppose such attacker. PKI (Public Key Infrastructure) enables such technique. In PKI, the public key certificate is used. This public key certificate is issued and distributed by certificate authority, but we think that the updating of expired certificate etc. are very costly for the user. It seems that the management of secret key is more serious problem than that of public key certificate for the user. As above, in the system using public key cryptography, the managements of public key and secret key are very important problem. In order to solve the above problems, we propose the scheme that stores protected secret key which is made by combination of biometrics and secret key in the smartcard in the system which uses ID-based cryptography. In our proposal, TA (Trusted Authority) protects the secret key using biometrics information extracted from owner of that secret key and stores it as protected secret key in smartcard which has fingerprint reading function. And we must extract the same biometrics information as that is extracted at enrollment. So, we extract the helper data from biometrics information at making protected secret key and store it in smartcard. The user can restore the secret key form protected secret key by presenting his fingerprint to smart-card that has protected secret key and helper data. In our scheme, the template is not need for authentication. So, the problem of the leakes of the template arise in traditional baiometric authentication won't arise. Also we proposed the concrete operation scheme in which our scheme is used. We show that the cost of the public key and secret key management will be reduced by using this operation scheme.
UR - http://www.scopus.com/inward/record.url?scp=37349108472&partnerID=8YFLogxK
UR - http://www.scopus.com/inward/citedby.url?scp=37349108472&partnerID=8YFLogxK
U2 - 10.1109/MUE.2007.47
DO - 10.1109/MUE.2007.47
M3 - Conference contribution
AN - SCOPUS:37349108472
SN - 0769527779
SN - 9780769527772
T3 - Proceedings - 2007 International Conference on Multimedia and Ubiquitous Engineering, MUE 2007
SP - 29
EP - 34
BT - Proceedings - 2007 International Conference on Multimedia and Ubiquitous Engineering, MUE 2007
T2 - 2007 International Conference on Multimedia and Ubiquitous Engineering, MUE 2007
Y2 - 26 April 2007 through 28 April 2007
ER -