A Practical Set-Membership Proof for Privacy-Preserving NFC Mobile Ticketing - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Article Dans Une Revue Proceedings on Privacy Enhancing Technologies Année : 2015

A Practical Set-Membership Proof for Privacy-Preserving NFC Mobile Ticketing

Résumé

To ensure the privacy of users in transport systems, researchers are working on new protocols providing the best security guarantees while respecting functional requirements of transport operators. In this paper1, we design a secure NFC m-ticketing protocol for public transport that preserves users’ anonymity and prevents transport operators from tracing their customers’ trips. To this end, we introduce a new practical set-membership proof that does not require provers nor verifiers (but in a specific scenario for verifiers) to perform pairing computations. It is therefore particularly suitable for our (ticketing) setting where provers hold SIM/UICC cards that do not support such costly computations. We also propose several optimizations of Boneh-Boyen type signature schemes, which are of independent interest, increasing their performance and efficiency during NFC transactions. Our m-ticketing protocol offers greater flexibility compared to previous solutions as it enables the post-payment and the off-line validation of m-tickets. By implementing a prototype using a standard NFC SIM card, we show that it fulfils the stringent functional requirement imposed by transport operators whilst using strong security parameters. In particular, a validation can be completed in 184.25ms when the mobile is switched on, and in 266.52ms when the mobile is switched off or its battery is flat.
Fichier principal
Vignette du fichier
21_Arfaoui(1).pdf (761.71 Ko) Télécharger le fichier
Origine : Fichiers éditeurs autorisés sur une archive ouverte
Loading...

Dates et versions

hal-01192867 , version 1 (24-08-2020)

Licence

Paternité - Pas d'utilisation commerciale - Pas de modification

Identifiants

Citer

Pascal Berthomé, Saïd Gharout, Ghada Arfaoui, Jean-François Lalande, Jacques Traoré, et al.. A Practical Set-Membership Proof for Privacy-Preserving NFC Mobile Ticketing. Proceedings on Privacy Enhancing Technologies, 2015, 2015 (2), pp.25-45. ⟨10.1515/popets-2015-0019⟩. ⟨hal-01192867⟩
465 Consultations
86 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More