Performance Issues of Selective Disclosure and Blinded Issuing Protocols on Java Card

  • Authors:
  • Hendrik Tews;Bart Jacobs

  • Affiliations:
  • Digital Security Group, Radboud Universiteit Nijmegen, The Netherlands;Digital Security Group, Radboud Universiteit Nijmegen, The Netherlands

  • Venue:
  • WISTP '09 Proceedings of the 3rd IFIP WG 11.2 International Workshop on Information Security Theory and Practice. Smart Devices, Pervasive Systems, and Ubiquitous Networks
  • Year:
  • 2009

Quantified Score

Hi-index 0.00

Visualization

Abstract

In this paper we report on the performance of the RSA variants of Brands protocols for zero-knowledge proof and restrictive blinded issuing . The performance is relatively bad: For 4 attributes and an RSA key size of 1280 bits, blinded issuing takes about 10 seconds and the zero-knowledge proof takes about 9 seconds. For 2 attributes the zero-knowledge proof drops to 5 seconds. The poor performance comes from the fact that the cryptographic coprocessor on the Java card can only be employed in very limited ways. With appropriate support of the cryptographic coprocessor both protocols would run much faster.