Implementation of an extended FIDO2 authenticator using Attribute-Based Signatures.

International Conference on Software Quality, Reliability and Security(2020)

引用 0|浏览21
暂无评分
摘要
Passwords has been used as an authentication method for Web services, but it has some issues in terms of usability and security. FIDO solves these problems and is now being used as an authentication method. It consists of two elements: signature verification using public key cryptography and local authentication using an authenticator such as a user's device. It is a robust authentication method that is resistant to current mainstream attacks. When FIDO authentication is used to grant special access rights to agents other than the user, it is necessary to implement access control as a system. We propose to extend the specification of FIDO authentication to use Attribute-Based Signatures, where the access control is based on the cryptographic used for authentication. We also implement an extended FIDO authenticator for the proposed method.
更多
查看译文
关键词
FIDO2,WebAuthn,CTAP,Attribute-based Signature
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要