Efficient Distributed Group Key Management Scheme Using a One-Way Function Tree

LI Yanxi,ZHAO Yao,LIN Chuang,YIN Hao,JIANG Yixin
DOI: https://doi.org/10.3321/j.issn:1000-0054.2005.10.032
2005-01-01
Abstract:An efficient,secure distributed key management scheme(D-OFT) using a one-way function tree was developed to avoid the single failure point problem and the unfairness in group key generation or refreshment algorithms in centralized group key management schemes.In the D-OFT,all valid users jointly participate in negotiating the group key,thus eliminating the unfairness in the process of generating or refreshing a group key.Moreover,the D-OFT is a distributed scheme,so there is no single failure point.The algorithm also provides efficient key updating with a small re-key message size O(log n.Security and performance analyses show that this scheme meets the required forward and backward secrecy requirements when a new member leaves or joins a group,a subgroup is merged into another subgroup,or a group is partitioned into several subgroups.Hence,the D-OFT scheme can be easily deployed in small or medium size dynamic secure group communication systems with dynamic group membership and no centralized control node.
What problem does this paper attempt to address?