Recently, a new type of authenticated encryption scheme is proposed.It first combines signature with message recovery schemes and symmetric encryption schemes together,and this type of scheme doesn't use Hash or Redundancy func-tions.But,the scheme without the basic condition of the digital signature cannot prevent the receiver of message from forging signature.This paper presents a new authenticated encryption scheme whose security is based on the DLP and double module.The signature can be converted a common signature on bringing dissension.Anyone can verify the validity of the signature.%最近提出的一类新的认证加密方案首次将消息可恢复签名和对称加密有机结合,而且不需要使用Hash函数或Redundancy函数.但分析发现该方案不具有数字签名所要求的基本条件,不能抵抗消息接收者的伪造攻击.为此提出了一种新的认证加密方案,该方案的安全性以求解离散对数难题和双重模难题为基础,而且可以在发生纠纷时将认证加密的签名转化为普通的签名,任何人都可以验证签名的有效性.
展开▼