Journal

Authors: Pereniguez F., Marin-Lopez R., Kambourakis G., Ruiz Martinez A., Gritzalis S., Gomez A.
Title: KAMU: Providing Advanced User Privacy in Kerberos Multi-Domain Scenarios
Journal: International Journal of Information Security (IJIS)
Volume: 12
Number: 6
Pages: 505-525
Year: 2013
Publisher: Springer
To appear: No
Link: http://link.springer.com/content/pdf/10.1007%2Fs10207-013-0201-1.pdf
ISI: Yes
Impact Factor: 0.941
File name: KAMU_IJIS_2013.pdf##^^&&367125729.pdf
Abstract: In Next Generation Networks (NGN), Kerberos is becoming a key component to support authentication and key distribution for Internet application services. However, for this purpose, Kerberos needs to rectify certain deficiencies that it presents and especially that of privacy which allows an eavesdropper to obtain information of the services users are accessing. This paper presents a comprehensive privacy framework that guarantees user anonymity, service access unlinkability and message exchange unlinkability in Kerberos both in single-domain and multi-domain scenarios. This proposal is based on different extensibility mechanisms already defined for Kerberos, which facilitate its adoption in already deployed systems. Furthermore, our proposal has been evaluated in terms of performance and the results demonstrate its lightweight nature.