Secure Aggregation with an Oblivious Server

07/25/2023
by   Hua Sun, et al.
0

Secure aggregation usually aims at securely computing the sum of the inputs from K users at a server. Noticing that the sum might inevitably reveal information about the inputs (when the inputs are non-uniform) and typically the users (not the server) desire the sum (in applications such as federated learning), we consider a variant of secure aggregation where the server is oblivious, i.e., the server only serves as a communication facilitator/helper to enable the users to securely compute the sum and learns nothing in the process. Our communication protocol involves one round of messages from the users to the server and one round of messages from the server to each user such that in the end each user only learns the sum of all K inputs and the server learns no information about the inputs. For this secure aggregation with an oblivious server problem, we show that to compute 1 bit of the sum securely, each user needs to send at least 1 bit to the server, the server needs to send at least 1 bit to each user, each user needs to hold a key of at least 2 bits, and all users need to collectively hold at least K key bits. In addition, when user dropouts are allowed, the optimal performance remains the same, except that the minimum size of the key held by each user increases to K bits, per sum bit.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
05/17/2022

Secure Summation: Capacity Region, Groupwise Key, and Feasibility

The secure summation problem is considered, where K users, each holds an...
research
01/19/2021

Information Theoretic Secure Aggregation with User Dropouts

In the robust secure aggregation problem, a server wishes to learn and o...
research
08/04/2023

LISA: LIghtweight single-server Secure Aggregation with a public source of randomness

Secure Aggregation (SA) is a key component of privacy-friendly federated...
research
11/21/2021

Secure Linear Aggregation Using Decentralized Threshold Additive Homomorphic Encryption For Federated Learning

Secure linear aggregation is to linearly aggregate private inputs of dif...
research
11/02/2022

MDS Variable Generation and Secure Summation with User Selection

A collection of K random variables are called (K,n)-MDS if any n of the ...
research
04/19/2023

Weakly Secure Summation with Colluding Users

In secure summation, K users, each holds an input, wish to compute the s...
research
04/24/2022

Information Theoretic Secure Aggregation with Uncoded Groupwise Keys

Secure aggregation, which is a core component of federated learning, agg...

Please sign up or login with your details

Forgot password? Click here to reset