Digitally Signed Document Sanitizing Scheme with Disclosure Condition Control
نویسندگان
چکیده
A digital signature does not allow any alteration of the document to which it is attached. Appropriate alteration of some signed documents, however, should be allowed because there are security requirements other than that for the integrity of the document. In the disclosure of official information, for example, sensitive information such as personal information or national secrets is masked when an official document is sanitized so that its nonsensitive information can be disclosed when it is demanded by a citizen. If this disclosure is done digitally by using the current digital signature schemes, the citizen cannot verify the disclosed information correctly because the information has been altered to prevent the leakage of sensitive information. That is, with current digital signature schemes, the confidentiality of official information is incompatible with the integrity of that information. This is called the digital document sanitizing problem, and some solutions such as digital document sanitizing schemes and content extraction signatures have been proposed. In this paper, we point out that the conventional digital signature schemes are vulnerable to additional sanitizing attack and show how this vulnerability can be eliminated by using a new digitally signed document sanitizing scheme with disclosure condition control. key words: digital signature, disclosure of official information, privacy issue
منابع مشابه
Digitally Signed Documents – Ambiguities and Solutions
Digitally signing a digital document is a straightforward procedure; however, when the digital document contains dynamic content, the digital signature may remain valid but the viewed document may not be the same as the document when viewed by the signer. Other similar problems exist even with ‘static’ documents, if the appearance of a document can be changed. In this paper, we consider previou...
متن کاملISSE 2002 - Extended Abstract - Long-term conservation of ..
Electronically signed documents can lose value of evidence because the security of cryptographic algorithms decreases in the course of time. In this paper we describe legal, technical and user-oriented requirements for long-term conservation of provability of electronically signed documents, which were systematically examined in the project “ArchiSig Conclusive and secure long term archiving of...
متن کاملProbabilistic Counting of Large Digital Signature Collections
A large number of people digitally sign the same document. The signature collectors want to use only a small amount of memory to demonstrate to any third party approximately how many persons have signed it. The scheme described in this paper uses a non-uniform secure hash function to select a small subset of signatures that the collectors store. The size of this subset becomes a verifiable esti...
متن کاملWhat You See is Not Always What You Sign
A fundamental aspect of computer systems is that displaying and signing a digital document are separate and unlinked processes. In addition, the same digital document can be displayed differently on different systems. As a consequence it is difficult to determine what exactly has been signed, both from the signer’s and the verifier’s point of view. This paper discusses how confusion about the m...
متن کاملAn LDAP Control and Schema for Holding Operation Signatures
In many environments clients require the ability to validiate the source and integrity of information provided by the directory. This document describes an LDAP message control which allows for the retrieval of digitally signed information. This document defines an LDAP v3 based mechanism for signing directory operations in order to create a secure journal of changes that have been made to each...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید
ثبت ناماگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید
ورودعنوان ژورنال:
- IEICE Transactions
دوره 88-A شماره
صفحات -
تاریخ انتشار 2005