首页> 外文会议>International conference on cryptology in India >Warrant-Hiding Delegation-by-Certificate Proxy Signature Schemes
【24h】

Warrant-Hiding Delegation-by-Certificate Proxy Signature Schemes

机译:凭单隐藏凭单委托书签名方案

获取原文

摘要

Proxy signatures allow an entity (the delegator) to delegate his signing capabilities to other entities (called proxies), who can then produce signatures on behalf of the delegator. Typically, a delegator may not want to give a proxy the power to sign any message on his behalf, but only messages from a well defined message space. Therefore, the so called delegation by warrant approach has been introduced. Here, a warrant is included into the delegator's signature (the so called certificate) to describe the message space from which a proxy is allowed to choose messages to produce valid signatures for. Interestingly, in all previously known constructions of proxy signatures following this approach, the warrant is made explicit and, thus, is an input to the verification algorithm of a proxy signature. This means, that a verifier learns the entire message space for which the proxy has been given the signing power. However, it may be desirable to hide the remaining messages in the allowed message space from a verifier. This scenario has never been investigated in context of proxy signatures, but seems to be interesting for practical applications. In this paper, we resolve this issue by introducing so called warrant-hiding proxy signatures. We provide a formal security definition of such schemes by augmenting the well established security model for proxy signatures by Boldyreva et al. Furthermore, we discuss strategies how to realize this warrant-hiding property and we also provide two concrete instantiations of such a scheme. They enjoy different advantages, but are both entirely practical. Moreover, we prove them secure with respect to the augmented security model.
机译:代理签名允许一个实体(委托人)将其签名功能委托给其他实体(称为代理),然后其他实体可以代表委托人产生签名。通常,委托人可能不希望授予代理人代表他签名任何消息的权力,而只希望来自定义明确的消息空间中的消息。因此,引入了所谓的按授权委托方式。在此,委托人的签名(所谓的证书)中包含了保证书,以描述允许代理从中选择消息以为其生成有效签名的消息空间。有趣的是,在遵循该方法的所有先前已知的代理签名结构中,保证书都是明确的,因此是对代理签名验证算法的输入。这意味着,验证者将学习已为其赋予代理签名权的整个消息空间。但是,可能希望对验证者隐藏在允许的消息空间中的其余消息。从未在代理签名的上下文中研究过这种情况,但对于实际应用而言似乎很有趣。在本文中,我们通过引入所谓的隐藏凭单代理签名来解决此问题。我们通过扩大Boldyreva等人为代理签名建立的安全模型来提供此类方案的正式安全性定义。此外,我们讨论了如何实现这一隐藏证物的策略,并且还提供了这种方案的两个具体实例。它们具有不同的优点,但两者都是完全实用的。此外,我们证明了它们在增强安全性模型方面的安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号