An Anonymous Authentication Protocol With Delegation and Revocation for Content Delivery Networks
Hu Xiong,Zhida Zhou,Lili Wang,Zetong Zhao,Xin Huang,Hao Zhang
DOI: https://doi.org/10.1109/jsyst.2021.3113728
IF: 4.802
2021-01-01
IEEE Systems Journal
Abstract:By redirecting a user's request to the nearest cache server, content delivery networks (CDNs) enable users to obtain services in time and reduce the burden of the origin server. Nevertheless, the origin server suffers from the private key leakage problem when delegating the authentication capability to untrusted CDN nodes. To handle this challenge, this article proposes an anonymous authentication protocol with delegation and revocation for CDNs depending on the proxy resignature (PRS) cryptography. Specifically, we first present an efficient revocable PRS (R-PRS) scheme, which is proved to be secure under the extended Computational Diffie-Hellman assumption. Then, based on R-PRS scheme, the proposed protocol enables the origin server to delegate and revoke the authentication capability to the CDN nodes without leaking its private key. Furthermore, our protocol not only provides anonymity, mutual authentication, and session key establishment, but also achieves forward security. Eventually, theoretical analysis and implementation demonstrate that the proposed protocol has an excellent performance in efficiency and practicality.
computer science, information systems,telecommunications,engineering, electrical & electronic,operations research & management science