In this paper we propose a tokenization algorithm ofReversibleHybrid type, as defined in PCI DSS guidelines for designing a tokenization solution, based on a block cipher with a secret key and (possibly public) additional input. We provide some formal proofs of security for it, which imply our algorithm satisfies themost significant security requirements described in PCI DSS tokenization guidelines. Finally, we give an instantiation with concrete cryptographic primitives and fixed length of the PAN, and we analyze its efficiency and security.
|Titolo:||Several proofs of security for a tokenization algorithm|
|Data di pubblicazione:||2017|
|Appare nelle tipologie:||1.1 Articolo in rivista|