【24h】

Signature Schemes with Bounded Leakage Resilience

机译:签名方案具有有界泄漏弹性的

获取原文

摘要

A leakage-resilient cryptosystem remains secure even if arbitrary, but bounded, information about the secret key (and possibly other internal state information) is leaked to an adversary. Denote the length of the secret key by n. We show: 1. A full-fledged signature scheme tolerating leakage of n - n~ε bits of information about the secret key (for any constant ε > 0), based on general assumptions. 2. A one-time signature scheme, based on the minimal assumption of one-way functions, tolerating leakage of (1/4 - ε)·n bits of information about the signer's entire state. 3. A more efficient one-time signature scheme, that can be based on several specific assumptions, tolerating leakage of (1/2 - ε)·n bits of information about the signer's entire state. The latter two constructions extend to give leakage-resilient t-time signature schemes. All the above constructions are in the standard model.
机译:即使任意,但有界,有关秘密密钥(以及可能的其他内部状态信息)的信息,泄漏的弹性密码系统也仍然是安全的。表示秘密密钥的长度由n。我们展示:1。基于一般假设,一种全面的签名方案容忍N - N〜ε位的N - N〜ε位的信息泄漏,基于常规假设,对秘密密钥(对于任何常数ε> 0)。 2.基于单向功能的最小假设,容忍(1/4 - ε)·n个关于签名者的整个状态的信息的最小假设。 3.一种更有效的一次性签名方案,可以基于几种特定的假设,容忍(1/2 - ε)·n位有关签名者的整个状态的N比特的泄漏。后两种结构延伸以提供泄漏 - 弹性T-Time签名方案。所有上述结构都在标准模型中。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号