无证书公钥加密体制不仅避免了公钥加密体制中复杂的公钥证书管理,同时也解决了基于身份加密体制里的密钥托管问题。在无证书公钥加密体制里融合了并行密钥隔离体制的方案,提出了一种新的无证书并行密钥隔离加密(CL-PKIE)体制。这种新的体制满足了恶劣复杂的实际应用环境的安全性要求,减轻了密钥泄露问题。给出了CL-PKIE体制的具体结构并证明了在随机预言机模型下方案的IND-CCA2安全性。
Certificateless public key encryption(CL-PKE) enjoys the attractive advantages of avoiding heavy certificate management overhead in public key infrastructure and solving the key-escrow in identity-based encryption.This paper combined the parallel key-insulated security notion with the CL-PKE scheme.By this approach, this paper proposed a certificateless parallel key-insulated public key encryption(CL-PKIE) scheme.The new scheme achieves the security requirements in the hostile practical environment by mitigating the problem of the key-leakage.This paper also gave the concrete construction of the CL-PKIE scheme and proved the CL-PKIE scheme was secure against IND-CCA2 attacks in the random oracle model.