Optimistic fair exchange of digital signatures

被引:236
作者
Asokan, N [1 ]
Shoup, V [1 ]
Waidner, M [1 ]
机构
[1] IBM Corp, Div Res, Zurich Res Lab, CH-8803 Ruschlikon, Switzerland
关键词
atomic transaction; digital signature; fair exchange;
D O I
10.1109/49.839935
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
We present a new protocol that allows two players to exchange digital signatures over the Internet in a fair way, so that either each player gets the other's signature, or neither player does. The obvious application is where the signatures represent items of value, for example, an electronic check or airline ticket. The protocol can also be adapted to exchange encrypted data. It relies on a trusted third party, but is "optimistic," in that the third party is only needed in cases where one player crashes or attempts to cheat, A key feature of our protocol is that a player can always force a timely and fair termination, without the cooperation of the other player, even in a completely asynchronous network. A specialization of our protocol can be used for contract signing; this specialization is not only more efficient, but also has the important property that the third party can be held accountable for its actions: if it ever cheats, this ran be detected and proven.
引用
收藏
页码:593 / 610
页数:18
相关论文
共 41 条
[1]  
[Anonymous], 1997, ACM CCS
[2]  
Asokan N, 1997, P 4 ACM C COMP COMM, P6
[3]  
ASOKAN N, ADV CRYPTOLOGY EUROC
[4]   Efficient and practical fair exchange protocols with off-line TTP [J].
Bao, F ;
Deng, RH ;
Mao, WB .
1998 IEEE SYMPOSIUM ON SECURITY AND PRIVACY - PROCEEDINGS, 1998, :77-85
[5]  
Beaver D., 1991, Journal of Cryptology, V4, P75, DOI 10.1007/BF00196771
[6]  
Bellare M., 1996, ENCAPSULATED KEY ESC
[7]  
Bellare M., 1995, P 1 ACM C COMPUTER C, P62
[8]  
BELLARE M, ADV CRYPTOLOGY CRYPT, P92
[9]  
BOYER J, 1990, J CRYPTOL, V2, P63
[10]  
BRANDS S, ADV CRYTPLOGY CRYPTO, P302