Flexible and Practical Scheme to Preserve Confidentiality of Sensitive Attributes in Digital Certificate
Bin Zhu
Abstract
Bin Zhu
Abstract
In open environment,digital certificate is used in identity authentication and authorization management.Digi-tal certificate often includes sensitive attributes,so the research on preserving confidentiality of sensitive attributes in digital certificate becomes concerned.This paper presented a flexible and practical scheme to preserve confidentiality of sensitive attributes in digital certificate,and analysed its security and performance.In the scheme,the different sensitive attributes in digital certificate are encrypted with different sub-keys generated from a main key.The scheme has some characteristics as follows:selectively disclosing sensitive attributes in digital certificate,simple key management,and low time cost.Based on X.509,the presented scheme was implemented.
A significance statement is not available in the OpenAlex record.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
In open environment,digital certificate is used in identity authentication and authorization management.Digi-tal certificate often includes sensitive attributes,so the research on preserving confidentiality of sensitive attributes in digital certificate becomes concerned.This paper presented a flexible and practical scheme to preserve confidentiality of sensitive attributes in digital certificate,and analysed its security and performance.In the scheme,the different sensitive attributes in digital certificate are encrypted with different sub-keys generated from a main key.The scheme has some characteristics as follows:selectively disclosing sensitive attributes in digital certificate,simple key management,and low time cost.Based on X.509,the presented scheme was implemented.
Key concepts: Public key certificate, Implicit certificate, Root certificate, Computer science, Authorization certificate, Certificate, Computer security, Confidentiality