This document proposes a system for securing brokerless publish/subscribe systems using identity-based encryption. It aims to provide authentication of publishers and subscribers as well as confidentiality of events. The system adapts identity-based encryption techniques to allow subscribers to decrypt events only if their credentials match the encrypted credentials associated with the event. It also defines a weaker notion of subscription confidentiality and designs a secure overlay maintenance protocol to preserve it. Evaluations show the approach can provide security affordably with respect to throughput and delays incurred during system operations.