Privacy-Preserving Electronic Ticket Scheme with Attribute-Based Credentials

被引:12
|
作者
Han, Jinguang [1 ,2 ]
Chen, Liqun [2 ]
Schneider, Steve [2 ]
Treharne, Helen [2 ]
Wesemeyer, Stephan [2 ]
机构
[1] Queens Univ Belfast, Ctr Secure Informat Technol CSIT, Inst Elect Commun & Informat Technol ECIT, Belfast BT3 9DT, Antrim, North Ireland
[2] Univ Surrey, Surrey Ctr Cyber Secur, Dept Comp Sci, Guildford GU2 7XH, Surrey, England
基金
英国工程与自然科学研究理事会;
关键词
Privacy; Authentication; Complexity theory; Computer crime; Computer science; Cryptography; Anonymity; attribute-based credentials; privacy-enhanced authentication; electronic ticket; IDENTITY-BASED ENCRYPTION; SIGNATURE SCHEMES; SYSTEM;
D O I
10.1109/TDSC.2019.2940946
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Users accessing services are often required to provide personal information, for example, age, profession and location, in order to satisfy access polices. This personal information is evident in the application of e-ticketing where discounted access is granted to visitor attractions or transport services if users satisfy policies related to their age or disability or other defined over attributes. We propose a privacy-preserving electronic ticket scheme using attribute-based credentials to protect users' privacy. The benefit of our scheme is that the attributes of a user are certified by a trusted third party so that the scheme can provide assurances to a seller that a user's attributes are valid. The scheme makes the following contributions: (1) users can buy different tickets from ticket sellers without releasing their exact attributes; (2) two tickets of the same user cannot be linked; (3) a ticket cannot be transferred to another user; (4) a ticket cannot be double spent. The novelty of our scheme is to enable users to convince ticket sellers that their attributes satisfy the ticket policies and buy discounted tickets anonymously. This is a step towards identifying an e-ticketing scheme that captures user privacy requirements in transport services. The security of our scheme is proved and reduced to a well-known complexity assumption. The scheme is also implemented and its performance is empirically evaluated.
引用
收藏
页码:1836 / 1849
页数:14
相关论文
共 50 条
  • [1] Privacy-Preserving Auditing for Attribute-Based Credentials
    Camenisch, Jan
    Lehmann, Anja
    Neven, Gregory
    Rial, Alfredo
    COMPUTER SECURITY - ESORICS 2014, PT II, 2014, 8713 : 109 - 127
  • [2] Distance-Bounding, Privacy-Preserving Attribute-Based Credentials
    Bosk, Daniel
    Bouget, Simon
    Buchegger, Sonja
    CRYPTOLOGY AND NETWORK SECURITY, CANS 2020, 2020, 12579 : 147 - 166
  • [3] Privacy-Preserving Attribute-Based Credentials in Cooperative Intelligent Transport Systems
    Neven, Gregory
    Baldini, Gianmarco
    Camenisch, Jan
    Neisse, Ricardo
    2017 IEEE VEHICULAR NETWORKING CONFERENCE (VNC), 2017, : 131 - 138
  • [4] On the User Acceptance of Privacy-Preserving Attribute-Based Credentials - A Qualitative Study
    Sabouri, Ahmad
    DATA PRIVACY MANAGEMENT AND SECURITY ASSURANCE, 2016, 9963 : 130 - 145
  • [5] A Privacy-Preserving Attribute-Based Access Control Scheme
    Xu, Yang
    Zeng, Quanrun
    Wang, Guojun
    Zhang, Cheng
    Ren, Ju
    Zhang, Yaoxue
    SECURITY, PRIVACY, AND ANONYMITY IN COMPUTATION, COMMUNICATION, AND STORAGE (SPACCS 2018), 2018, 11342 : 361 - 370
  • [6] Concepts Around Privacy-Preserving Attribute-Based Credentials Making Authentication with Anonymous Credentials Practical
    Camenisch, Jan
    PRIVACY AND IDENTITY MANAGEMENT FOR EMERGING SERVICES AND TECHNOLOGIES, 2014, 421 : 53 - 63
  • [7] A Privacy-Preserving Attribute-Based Authentication Scheme for Cloud Computing
    Huang, Chanying
    Wei, Songjie
    Yan, Kedong
    Zhang, Gongxuan
    Fu, Anmin
    2018 ASIA-PACIFIC SIGNAL AND INFORMATION PROCESSING ASSOCIATION ANNUAL SUMMIT AND CONFERENCE (APSIPA ASC), 2018, : 260 - 265
  • [8] Assessment of attribute-based credentials for privacy-preserving road traffic services in smart cities
    J. M. de Fuentes
    L. González-Manzano
    J. Serna-Olvera
    F. Veseli
    Personal and Ubiquitous Computing, 2017, 21 : 869 - 891
  • [9] Assessment of attribute-based credentials for privacy-preserving road traffic services in smart cities
    de Fuentes, J. M.
    Gonzalez-Manzano, L.
    Serna-Olvera, J.
    Veseli, F.
    PERSONAL AND UBIQUITOUS COMPUTING, 2017, 21 (05) : 869 - 891
  • [10] Privacy-preserving attribute ticket scheme based on mobile terminal with smart card
    Shi R.
    Feng H.
    Xie H.
    Shi G.
    Liu B.
    Yang Y.
    Tongxin Xuebao/Journal on Communications, 2022, 43 (10): : 26 - 41