arXiv論文メモ
新着一覧
cs.CR · 掲載先の記載あり

認証機関ごとの重みの変化に対応する匿名資格情報

Differential Trust: Dynamic Multi-Authority Anonymous Credentials with Epoch-Weighted Updates

Chen Li, Jianting Ning, Xiulong Liu, Yulin Liu

この論文をやさしく読む

ひとことで言うと

複数の機関が匿名認証用の資格情報を発行するとき、機関ごとの信頼や持分に重みを付け、時間とともにその重みが変わっても更新できる方法です。

何に役立つ?

考えられる用途は、機関やノードの重要度が変わる分散システムでの、本人を明かさない属性認証です。

この研究の面白いところ

署名を時間区間に結び付けることで、重み付き発行と、区間が変わった際の対話不要の更新を両立させています。

どこまで分かった?

安全性の証明は新しいSTB-GPS仮定などに基づくものです。10.68 msは128個を集約した資格情報の提示の平均時間であり、発行から更新までの全処理時間ではありません。

v1のアブストラクトに基づくAI解説。日本語訳とは別に、用途の解釈を含みます。

アブストラクトの日本語訳

匿名資格情報(AC)はプライバシーを保護する認証の基礎であり、利用者は身元を明かさずに属性の保有を証明できる。最新のACは、Shamirの秘密分散や集約署名などを使い、複数機関に資格情報の発行を分散する。この方法はシステムの頑健性を高め、単一障害点をなくすが、資格情報の発行時にはすべての機関を等しく扱う。この一律の扱いは、機関ごとに異なる信頼度や持分を無視している。特にProof-of-Stakeネットワークなど現代の分散システムでは、ノード間に内在する信頼の違いを資格情報の発行に活用できないことが問題になる。 この限界に対応するため、エポックに基づく重みを持つ複数機関匿名資格情報(MA-ACEW)を提案する。これは、資格情報の発行で機関の重みの分布を考慮する初の複数機関匿名資格情報モデルである。重要な点として、エポック間で機関の重み分布が変わる際にも、効率よく資格情報を更新できる。 MA-ACEWの中核は、署名を特定の時間区間であるエポックに結び付ける、新しいEpoch-Bound Pointcheval–Sanders署名(EB-PS)である。この時間的な結び付けにより、エポック内では重みに基づく発行ができ、エポック間では効率的で対話不要の更新ができる。EB-PSのEUF-eCMA偽造不可能性の要件を定式化し、新たなSTB-GPS仮定の下で提案構成がそれを満たすことを証明する。その後、MA-ACEWの構成が偽造不可能性、匿名性、ブラインド性を達成することを証明する。最後に、EB-PSとMA-ACEWの効率性を示すベンチマークを提示する。128個の部分資格情報を集約した資格情報の提示は、平均わずか10.68 msで行える。

v1の要旨から自動生成。本文の精読・人による確認は未実施。

初稿
2026-09-16(UTC)
最新改訂
2026-09-16 · v1
査読・掲載
掲載先の記載あり

著者による掲載先の記載:35th USENIX Security Symposium (USENIX Security 26), pp. 6385-6404, USENIX Association, 2026。出版社での独立確認は未実施です。

arXivで読むPDF

更新履歴

取得できた版を表示。版の更新は査読済みを意味しません。過去版の本文差分は未解析です。

原文の要旨

Anonymous credentials (ACs) are fundamental to privacy-preserving authentication, allowing users to prove possession of attributes without revealing their identities. State-of-the-art ACs distribute credential issuance across multiple authorities, typically employing techniques such as Shamir's secret sharing or aggregate signatures. While this approach enhances system robustness and eliminates a single point of failure, it treats all authorities equally in the credential issuance phase. This uniform treatment disregards the varying levels of trustworthiness or stake held by different authorities. Such a limitation has become particularly problematic in modern decentralized systems like Proof-of-Stake networks, where the inherent trust differentiation among nodes cannot be leveraged in the credential issuance process. To address this limitation, we propose the notion of Multi-Authority Anonymous Credentials with Epoch-Based Weights (MA-ACEW), the first Multi-Authority Anonymous Credential (MA-AC) model that considers authorities' weight distribution in credential issuance. Crucially, MA-ACEW enables efficient credential updates when authority weight distributions change across epochs. The core of MA-ACEW is our novel Epoch-Bound Pointcheval-Sanders Signature (EB-PS) primitive, which binds signatures to specific time epochs. This temporal binding enables both weight-based credential issuance within epochs and efficient non-interactive credential updates across epochs. We formalize the EUF-eCMA unforgeability requirement for EB-PS and prove our construction satisfies it under a novel STB-GPS assumption. We then prove that our MA-ACEW construction achieves unforgeability, anonymity, and blindness. Finally, we present benchmarks demonstrating the efficiency of EB-PS and MA-ACEW. Remarkably, presenting a credential aggregated from 128 partial ones takes only 10.68 ms on average.

著者のコメント

34 pages. Full version of the paper published at the 35th USENIX Security Symposium (USENIX Security '26)

arXiv ID: 2609.18811 / 要約の誤りについて