首页> 外文会议>International Conference on the Theory and Applications of Cryptographic Techniques, Apr 28-May 2, 2002, Amsterdam, the Netherlands >From Identification to Signatures via the Fiat-Shamir Transform: Minimizing Assumptions for Security and Forward-Security
【24h】

From Identification to Signatures via the Fiat-Shamir Transform: Minimizing Assumptions for Security and Forward-Security

机译:通过Fiat-Shamir变换从标识到签名:最小化安全性和前向安全性的假设

获取原文
获取原文并翻译 | 示例

摘要

The Fiat-Shamir paradigm for transforming identification schemes into signature schemes has been popular since its introduction because it yields efficient signature schemes, and has been receiving renewed interest of late as the main tool in deriving forward-secure signature schemes. We find minimal (meaning necessary and sufficient) conditions on the identification scheme to ensure security of the signature scheme in the random oracle model, in both the usual and the forward-secure cases. Specifically we show that the signature scheme is secure (resp. forward-secure) against chosen-message attacks in the random oracle model if and only if the underlying identification scheme is secure (resp. forward-secure) against impersonation under passive (i.e.. eavesdropping only) attacks, and has its commitments drawn at random from a large space. An extension is proven incorporating a random seed into the Fiat-Shamir transform so that the commitment space assumption may be removed.
机译:自引入以来,用于将标识方案转换为签名方案的Fiat-Shamir范式一直很流行,因为它可以产生有效的签名方案,并且最近作为一种前向安全签名方案的主要工具而受到了新的关注。我们发现识别方案的最小(意味着必要和充分)条件可以确保在随机预言模型中的签名方案的安全性,无论是在普通情况下还是在前向安全情况下。具体来说,我们表明,当且仅当底层标识方案对于被动(即,即假冒)下的假冒是安全的(针对正向安全性)时,签名方案对于随机预言模型中的选定消息攻击是安全的(对正向安全性)。仅窃听)攻击,并从大空间中随机抽取其承诺。证明了将随机种子合并到Fiat-Shamir变换中的扩展,因此可以删除承诺空间假设。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号