TTSSO: Traceable Threshold Single-Sign-on

Yifu Shi,Chunxiang Xu,Zhao Zhang,Xinyu Liu
DOI: https://doi.org/10.1109/iscipt61983.2024.10672864
2024-01-01
Abstract:Most existing digital twin systems utilize Single Sign- On (SSO) authentication protocols. In SSO authentication, an identity authentication server (IS) issues tokens to legitimate users, allowing them to access one or multiple application servers (AS) as required. However, traditional SSO protocols suffer from two main issues: privacy leakage and single point of failure. It is worth noting that traceability is often a requirement in digital twin systems, which was not adequately addressed by recent works. To address these challenges, we propose TTSSO that achieves traceability while protecting user privacy and preventing single points of failure. By utilizing a threshold number of partial tokens which issued by multiple identity servers, users can construct a blind token that prevents the extraction of private information. We have specifically set up a server called the Tracking Server (TS) to fulfill the tracking functionality and hand public key management. TS retains users' public keys and can reconstruct user identities based on the blind tokens. The effectiveness of our work was verified through experiments.
What problem does this paper attempt to address?