首页> 美国卫生研究院文献>other >Revocable identity-based proxy re-signature against signing key exposure
【2h】

Revocable identity-based proxy re-signature against signing key exposure

机译:基于可撤销身份的代理重新签名以防止密钥暴露

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

Identity-based proxy re-signature (IDPRS) is a novel cryptographic primitive that allows a semi-trusted proxy to convert a signature under one identity into another signature under another identity on the same message by using a re-signature key. Due to this transformation function, IDPRS is very useful in constructing privacy-preserving schemes for various information systems. Key revocation functionality is important in practical IDPRS for managing users dynamically; however, the existing IDPRS schemes do not provide revocation mechanisms that allow the removal of misbehaving or compromised users from the system. In this paper, we first introduce a notion called revocable identity-based proxy re-signature (RIDPRS) to achieve the revocation functionality. We provide a formal definition of RIDPRS as well as its security model. Then, we present a concrete RIDPRS scheme that can resist signing key exposure and prove that the proposed scheme is existentially unforgeable against adaptive chosen identity and message attacks in the standard model. To further improve the performance of signature verification in RIDPRS, we introduce a notion called server-aided revocable identity-based proxy re-signature (SA-RIDPRS). Moreover, we extend the proposed RIDPRS scheme to the SA-RIDPRS scheme and prove that this extended scheme is secure against adaptive chosen message and collusion attacks. The analysis results show that our two schemes remain efficient in terms of computational complexity when implementing user revocation procedures. In particular, in the SA-RIDPRS scheme, the verifier needs to perform only a bilinear pairing and four exponentiation operations to verify the validity of the signature. Compared with other IDPRS schemes in the standard model, our SA-RIDPRS scheme greatly reduces the computation overhead of verification.
机译:基于身份的代理重新签名(IDPRS)是一种新颖的密码原语,它允许半信任的代理使用重新签名密钥将同一消息上的一个身份下的签名转换为另一个身份下的另一个签名。由于这种转换功能,IDPRS在为各种信息系统构建隐私保护方案时非常有用。密钥撤销功能在实际的IDPRS中对于动态管理用户很重要。但是,现有的IDPRS方案不提供允许从系统中删除行为不当或受到感染的用户的吊销机制。在本文中,我们首先引入一个称为可撤消的基于身份的代理重新签名(RIDPRS)的概念,以实现撤消功能。我们提供了RIDPRS的正式定义及其安全模型。然后,我们提出了一种可以抵抗签名密钥暴露的具体RIDPRS方案,并证明了该方案对于标准模型中的自适应选择身份和消息攻击是存在不可伪造的。为了进一步提高RIDPRS中签名验证的性能,我们引入了一个称为服务器辅助可撤消基于身份的代理重新签名(SA-RIDPRS)的概念。此外,我们将提出的RIDPRS方案扩展到SA-RIDPRS方案,并证明该扩展方案对自适应选择的消息和串通攻击是安全的。分析结果表明,在实施用户吊销程序时,我们的两种方案在计算复杂度方面仍然有效。特别地,在SA-RIDPRS方案中,验证者仅需要执行双线性配对和四个取幂运算即可验证签名的有效性。与标准模型中的其他IDPRS方案相比,我们的SA-RIDPRS方案大大减少了验证的计算开销。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号