Zero Knowledge Protocols and Signatures from the Restricted Syndrome Decoding Problem

被引:1
|
作者
Baldi, Marco [1 ]
Bitzer, Sebastian [2 ]
Pavoni, Alessio [1 ]
Santini, Paolo [1 ]
Wachter-Zeh, Antonia [2 ]
Weger, Violetta [2 ]
机构
[1] Polytech Univ Marche, Dept Informat Engn, Brecce Bianche 12, I-60131 Ancona, Italy
[2] Tech Univ Munich, Inst Commun Engn, Theresienstr 90, D-80333 Munich, Germany
来源
PUBLIC-KEY CRYPTOGRAPHY, PT II, PKC 2024 | 2024年 / 14602卷
关键词
Code-based Cryptography; Post-Quantum Cryptography; Restricted Errors; Signature Scheme; Syndrome Decoding Problem; IDENTIFICATION; MQ;
D O I
10.1007/978-3-031-57722-2_8
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The Restricted Syndrome Decoding Problem (R-SDP) corresponds to the Syndrome Decoding Problem (SDP) with the additional constraint that all entries of the solution error vector must live in a fixed subset of the finite field. In this paper, we study how this problem can be applied to the construction of signatures derived from Zero-Knowledge (ZK) protocols. First, we show that R-SDP appears to be well-suited for this type of application: ZK protocols relying on SDP can easily be modified to use R-SDP, resulting in significant reductions in the communication cost. We then introduce and analyze a variant of R-SDP, which we call R-SDP(G), with the property that solution vectors can be represented with a number of bits that is slightly larger than the security parameter (which clearly provides an ultimate lower bound). This enables the design of competitive ZK protocols. We show that existing ZK protocols can greatly benefit from the use of R-SDP, achieving signature sizes in the order of 7 kB, which are smaller than those of several other schemes submitted to NIST's additional call for post-quantum digital signatures.
引用
收藏
页码:243 / 274
页数:32
相关论文
共 50 条
  • [1] Syndrome Decoding in the Head: Shorter Signatures from Zero-Knowledge Proofs
    Feneuil, Thibauld
    Joux, Antoine
    Rivain, Matthieu
    ADVANCES IN CRYPTOLOGY - CRYPTO 2022, PT II, 2022, 13508 : 541 - 572
  • [2] Code-based signatures from new proofs of knowledge for the syndrome decoding problem
    Loïc Bidoux
    Philippe Gaborit
    Mukul Kulkarni
    Victor Mateu
    Designs, Codes and Cryptography, 2023, 91 : 497 - 544
  • [3] Code-based signatures from new proofs of knowledge for the syndrome decoding problem
    Bidoux, Loic
    Gaborit, Philippe
    Kulkarni, Mukul
    Mateu, Victor
    DESIGNS CODES AND CRYPTOGRAPHY, 2023, 91 (02) : 497 - 544
  • [4] Strengthening zero-knowledge protocols using signatures
    Garay, JA
    MacKenzie, P
    Yang, K
    ADVANCES IN CRYPTOLOGY-EUROCRYPT 2003, 2003, 2656 : 177 - 194
  • [5] Strengthening Zero-Knowledge Protocols Using Signatures
    Juan A. Garay
    Philip MacKenzie
    Ke Yang
    Journal of Cryptology, 2006, 19 : 169 - 209
  • [6] Strengthening zero-knowledge protocols using signatures
    Garay, JA
    MacKenzie, P
    Yang, K
    JOURNAL OF CRYPTOLOGY, 2006, 19 (02) : 169 - 209
  • [7] A Zero-Knowledge Identification Scheme Based on the q-ary Syndrome Decoding Problem
    Cayrel, Pierre-Louis
    Veron, Pascal
    Alaoui, Sidi Mohamed El Yousfi
    SELECTED AREAS IN CRYPTOGRAPHY, 2011, 6544 : 171 - 186
  • [8] Polynomial reduction from syndrome decoding problem to regular decoding problem
    Zajac, Pavol
    DESIGNS CODES AND CRYPTOGRAPHY, 2025,
  • [9] Zero-Knowledge Protocols for the Subset Sum Problem from MPC-in-the-Head with Rejection
    Feneuil, Thibauld
    Maire, Jules
    Rivain, Matthieu
    Vergnaud, Damien
    ADVANCES IN CRYPTOLOGY- ASIACRYPT 2022, PT II, 2022, 13792 : 371 - 402
  • [10] Short Signatures from Regular Syndrome Decoding in the Head
    Carozza, Eliana
    Couteau, Geoffroy
    Joux, Antoine
    ADVANCES IN CRYPTOLOGY - EUROCRYPT 2023, PT V, 2023, 14008 : 532 - 563