– When implementing public key security ser- easy for an adversary to collect data and attack. To solve this vices in mobile ad hoc networks (MANETs), multiple problem, the distributed CA [1] is proposed, and the funccertificate authority (CA) servers are usually adopted to tionality of a single CA is distributed to a set of nodes by increase the security of the system, with each CA node secret sharing and threshold cryptography: the private key of holding only one share of the private key. To prevent an the CA is distributed to multiple entities, with each of them adversary from collecting a large enough number of holding one share of the secret, and the CA service is obshares over a long period of time to compromise the sys- tained by accessing a number of shares. This system can tem, the shares will be periodically updated. However, it only be compromised if a large enough number of the secret is not trivial how this update procedure can be done effi- shares have been obtained by ...
Ying Dong, Ai Fen Sui, Siu-Ming Yiu, Victor O. K.