2021
DOI: 10.2478/popets-2021-0018
|View full text |Cite
|
Sign up to set email alerts
|

EL PASSO: Efficient and Lightweight Privacy-preserving Single Sign On

Abstract: Anonymous credentials are a solid foundation for privacy-preserving Single Sign-On (SSO). They enable unlinkable authentication across domains and allow users to prove their identity without revealing more than necessary. Unfortunately, anonymous credentials schemes remain difficult to use and complex to deploy. They require installation and use of complex software at the user side, suffer from poor performance, and do not support security features that are now common, such as two-factor authentication, secret… Show more

Help me understand this report
View preprint versions

Search citation statements

Order By: Relevance

Paper Sections

Select...
4

Citation Types

0
7
0

Year Published

2021
2021
2024
2024

Publication Types

Select...
5
1
1

Relationship

0
7

Authors

Journals

citations
Cited by 11 publications
(7 citation statements)
references
References 46 publications
0
7
0
Order By: Relevance
“…Certified RP-Verified Credential. A user of EL PASSO [13] keeps a secret on his device. After authenticating the user, the trusted IdP issues a certified credential binding the secret, also kept on the user's device.…”
Section: Extended Related Workmentioning
confidence: 99%
See 2 more Smart Citations
“…Certified RP-Verified Credential. A user of EL PASSO [13] keeps a secret on his device. After authenticating the user, the trusted IdP issues a certified credential binding the secret, also kept on the user's device.…”
Section: Extended Related Workmentioning
confidence: 99%
“…Then, the user proves to the RP that he owns this secret to login. These RP-verified credentials protect user privacy well and two kinds of privacy threats are prevented [13,15,16], but the user has to by himself locally manage pseudonyms for different RPs. For example, the domain of an RP is used as a factor to generate the user's account (or pseudonym) at this RP.…”
Section: Extended Related Workmentioning
confidence: 99%
See 1 more Smart Citation
“…However, neither prevents colluding relying parties from linking a user's accounts across relying parties. EL PASSO [90], UnlimitID [53], UPRESSO [50], PseudoID [29] and Hammann et al [51] show how to build single sign-on services that protect clients from curious identity providers while ensuring that relying parties cannot link users' accounts.…”
Section: Related Workmentioning
confidence: 99%
“…SSI frameworks allow for versatile, user-centric, privacypreserving IMSs. Many SSI implementations have appeared in recent years, from EL PASSO [3] to the more decentralized Sovrin implementation [4,5]. Most of them protect privacy by relying on a cryptographic primitive known as Anonymous Credential (AC).…”
mentioning
confidence: 99%