计算机科学 ›› 2012, Vol. 39 ›› Issue (4): 41-45.

• 计算机网络与信息安全 • 上一篇    下一篇

一种新型的撤销成员的无加密短群签名方案

马海英,曾国荪   

  1. (同济大学计算机科学及技术系 上海201804) (嵌入式系统与服务计算教育部重点实验室 上海201804) (南通大学计算机科学与技术学院 南通226019)
  • 出版日期:2018-11-16 发布日期:2018-11-16

Novel Revocable Short Group Signatures Scheme without Encryption

  • Online:2018-11-16 Published:2018-11-16

摘要: 针对撤销成员的群签名中如何降低群成员的计算量、缩短签名长度等问题,提出了一种新型的撤销成员的无加密短群签名方案,并证明了其安全性。基于XDDH,LRSW和SDLP假设,通过将有效期属性编入签名钥来实现成员的有效撤销;为了提高签名的效率,没有使用加密算法,而是采用签名随机化的方法来保持签名者的匿名性。在成员的通信和计算开销方面,本撤销方案比以往撤销方案有很大的优势,成员可以错过任意多次更新,签名时只需下载最新更新值即可,群公钥保持不变,签名和验证的计算开销与撤销成员数无关,签名长度仅为1195bits。

关键词: 群签名,撤销成员,知识签名,IND-CCA2匿名性,安全性证明

Abstract: Aiming at the intrinsic problems in revocation group signatures,such as reducing group member's computational costs, shortening the signature length and so on, a novel revocation short group signature scheme without encryption was proposed based on the XDDH, LRSW and SDLP assumptions, and it's security was proven. Member revocation was implemented by encoding the validity time into group signature key. In particular, our scheme does not use standard encryption and relies on re-randomizable signature schemes that hide the signed message so as to preserve the anonymity of signers. Our solution outperforms all prior solutions for member revocation in terms of communication and computational costs for the members. Group public key remains constant, and computational costs of signing and verifying are independent of the revocable number, and the signature is only 1195 bits in size.

Key words: Group signatures, Revocation, Signaturcproof-of-knowledge, INd-CCA2 anonymity, Security proof

No related articles found!
Viewed
Full text


Abstract

Cited

  Shared   
  Discussed   
No Suggested Reading articles found!