With the development of Internet, privacy has become a close concern of users. Anonymous authentication plays an important role in privacy-preserving systems. $k$-times anonymous authentication ($k$-TAA) scheme allows members of a group to be authenticated anonymously by application providers up to $k$ times. Considering quantum computing attacks, lattice-based $k$-TAA was introduced. However, existing schemes do not support dynamically granting and revoking users. In this paper, we construct the first lattice-based dynamic $k$-TAA, which offers limited times anonymous authentication, dynamic member management, and post-quantum security. We present a concrete construction, and reduce its security to standard complexity assumptions. Notably, compared with existing lattice-based $k$-TAA, our scheme is efficient in terms of communication cost.
翻译:随着互联网的发展,隐私已成为用户密切关注的议题。匿名认证在隐私保护系统中扮演着重要角色。k次匿名认证方案允许群组成员被应用提供商匿名认证至多k次。考虑到量子计算攻击,基于格的k-TAA方案被提出。然而,现有方案不支持用户动态授权与撤销。本文构建了首个基于格的动态k-TAA方案,该方案提供有限次数的匿名认证、动态成员管理及后量子安全性。我们给出了具体构造,并将其安全性规约到标准复杂性假设。值得注意的是,与现有基于格的k-TAA方案相比,本方案在通信开销方面具有显著效率优势。