File and Network Servers White Papers
Lazy Revocation in Cryptographic File Systems
Overview A crucial element of distributed cryptographic file systems are key management solutions that allow for flexible but secure data sharing. This paper considers efficient key management schemes for cryptographic file systems using lazy revocation. It gives rigorous security definitions for three cryptographic schemes used in such systems, namely symmetric encryption, message-authentication codes and signature schemes. Additionally, it provides generic constructions for symmetric encryption and message-authentication codes with lazy revocation using key-updating schemes for lazy revocation, which have been introduced recently. It also gives a construction of signature schemes with lazy revocation from identity-based signatures. Finally, it describes how the constructions improve the key rotation mechanism in the Plutus file system.
| Publisher | IBM | File Format | |
|---|---|---|---|
| Date Published | September 2005 | ||
| Format | White Papers | ||
| Topics | |||



