A Blind Signature-Based Approach for Cross-Domain Authentication in the Cloud Environment

作者:Castiglione, Aniello*; Palmieri, Francesco; Chen, Chin-Ling; Chang, Yao-Chung
来源:International Journal of Data Warehousing and Mining, 2016, 12(1): 34-48.
DOI:10.4018/IJDWM.2016010103

摘要

In recent years, Cloud services have become an important part of people's lives, providing them with a large amount of IT resources, available from anywhere and at any time. The access to the services offered is controlled basing on users' identification credentials. As people acquire services from multiple cloud providers, in order to avoid the proliferation of identities associated to a single user, new cross-organization authentication methods, allowing the authorized transfer of users' identification data from one Cloud to another, are emerging. However, since most of these techniques do not protect adequately users' private information, attackers can easily intercept and tamper with confidential identity-related messages. In this paper, the authors use the characteristics of blind signatures to support user verification of the registering provider, to protect the user's identity, and to address known vulnerabilities in these systems. In addition, they use a strong designated verifier signature with message recovery characteristics to strengthen data communication security in the whole process.