Fine-grained forward-secure signature schemes without random oracles

被引:11
作者
Camenisch, J
Koprowski, M
机构
[1] IBM Corp, Zurich Res Lab, CH-8803 Ruschlikon, Switzerland
[2] Univ Aarhus, Dept Comp Sci, BRICS, DK-8000 Aarhus C, Denmark
关键词
digital signatures; forward security; non-repudiation;
D O I
10.1016/j.dam.2005.03.028
中图分类号
O29 [应用数学];
学科分类号
070104 ;
摘要
We propose the concept of fine-grained forward-secure signature schemes. Such signature schemes not only provide non-repudiation w.r.t. past time periods the way ordinary forward-secure signature schemes do but, in addition, allow the signer to specify which signatures of the current time period remain valid when revoking the public key. This is an important advantage if the signer produces many signatures per time period as otherwise the signer would have to re-issue those signatures (and possibly re-negotiate the respective messages) with a new key. A part front a formal model for fine-grained forward-secure signature schemes, we present practical schemes and prove them secure under the strong RSA assumption only, i.e., we do not resort to the random oracle model to prove security. As a side-result, we provide an ordinary forward-secure scheme whose key-update time is significantly smaller than that of known schemes which are secure without assuming random oracles. (c) 2005 Elsevier B.V. All rights reserved.
引用
收藏
页码:175 / 188
页数:14
相关论文
共 20 条
  • [11] Damgård I, 2002, LECT NOTES COMPUT SC, V2332, P256
  • [12] Dodis Y, 2003, LECT NOTES COMPUT SC, V2567, P130
  • [13] Fischlin M, 2003, LECT NOTES COMPUT SC, V2567, P116
  • [14] A DIGITAL SIGNATURE SCHEME SECURE AGAINST ADAPTIVE CHOSEN-MESSAGE ATTACKS
    GOLDWASSER, S
    MICALI, S
    RIVEST, RL
    [J]. SIAM JOURNAL ON COMPUTING, 1988, 17 (02) : 281 - 308
  • [15] Itkis G, 2002, LECT NOTES COMPUT SC, V2442, P499
  • [16] Kozlov A, 2003, LECT NOTES COMPUT SC, V2576, P241
  • [17] Malkin T, 2002, LECT NOTES COMPUT SC, V2332, P400
  • [18] MICCIANCIO D, 2002, COMMUNICATION AUG
  • [19] Nielsen JB, 2002, LECT NOTES COMPUT SC, V2442, P111
  • [20] SCHNORR CP, 1991, J CRYPTOL, V4, P239