A Distributed Shared Key Generation Procedure Using Fractional Keys
Date: October 18 - October 21, 1998
We present a new class of distributed key generation and recovery algorithms suitable for group communication systems where the group membership is either static or slowly time-varying, and must be tightly controlled. The proposed key generation approach allows entities which may have only partial trust in each other to jointly generate a shared key without the aid of an external third party. The group collectively generates and maintains a dynamic group parameter, and the shared key is generated using a pseudo random function using this parameter as a seed. The validity of key generation can be checked using veriable secret sharing techniques. The key retrieval method does not require the keys to be stored in an external retrieval center. We note that many Internet-based applications may have these requirements. Fulllment of these requirements is realized through the use of fractional keys-a distributed technique recently developed to enhance the security of distributed systems in a non-cryptographic manner.