Anonymous Single-Sign-On for n designated services with traceability
Jinguang Han, Liqun Chen, Steve Schneider, Helen Treharne, Stephan, Wesemeyer

TL;DR
This paper introduces a privacy-preserving anonymous single-sign-on scheme for multiple services, ensuring user anonymity and traceability with a lightweight design and strong security guarantees.
Contribution
It presents a novel anonymous authentication scheme that restricts verification to designated verifiers and supports a trusted third party for de-anonymization, enhancing privacy and security.
Findings
Scheme prevents information leakage even with verifier collusion
Supports traceability via a trusted third party
Achieves lightweight authentication without attribute-based signatures
Abstract
Anonymous Single-Sign-On authentication schemes have been proposed to allow users to access a service protected by a verifier without revealing their identity which has become more important due to the introduction of strong privacy regulations. In this paper we describe a new approach whereby anonymous authentication to different verifiers is achieved via authorisation tags and pseudonyms. The particular innovation of our scheme is authentication can only occur between a user and its designated verifier for a service, and the verification cannot be performed by any other verifier. The benefit of this authentication approach is that it prevents information leakage of a user's service access information, even if the verifiers for these services collude which each other. Our scheme also supports a trusted third party who is authorised to de-anonymise the user and reveal her whole services…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsCryptography and Data Security · Advanced Authentication Protocols Security · User Authentication and Security Systems
