首页> 外文期刊>Journal of Cryptology >Unconditionally Anonymous Ring and Mesh Signatures
【24h】

Unconditionally Anonymous Ring and Mesh Signatures

机译:无条件的匿名环和网格签名

获取原文
获取原文并翻译 | 示例
           

摘要

We generalize the ring signature primitive into the more general notion of mesh signature. Ring signatures are anonymous signatures made by someone who wishes to hide in the anonymity of a larger crowd. All that the signer needs to assemble such a virtual crowd is her own private key and the public keys of the other members. The crowd composition is all that the verifier will be able to see. In a sense, a ring signature expresses an anonymous endorsement of a message by a disjunction of signers. Mesh signatures generalize this notion by allowing the combination of "atomic" (i.e., regular) signatures, by one or multiple signers from an arbitrary larger crowd, into virtually any monotone "endorsement formula" with much more expressive power than a simple disjunction. The verifier sees only that the endorsement is valid for the stated formula, not how the formula is satisfied. As a special case, mesh signatures extend the ring signature functionality to certificate chains. This is useful when the anonymity-seeking signer wishes to hide in a crowd comprising uncooperative people who do not even have a published signature verification key on record. We give an efficient linear-size construction based on bilinear maps in the common random string model. Our mesh signatures achieve everlasting perfect anonymity-an imperative for the archetypical whistle-blowing use case of ring signatures-and, as a special case, yield the first unconditionally anonymous ring signatures without random oracles or trusted setup authorities. Non-repudiation is achieved from a mild extension of the SDH assumption, named Poly-SDH, which we introduce and justify meticulously.
机译:我们将环签名原语概括为网格签名的更一般概念。环签名是希望隐藏在更大人群中的匿名者的匿名签名。签名者聚集这样的虚拟人群所需要做的只是她自己的私钥和其他成员的公钥。验证者将能够看到的人群组成。从某种意义上说,环形签名通过分离签名者来表达对消息的匿名认可。网格签名通过允许来自任意较大人群的一个或多个签名者将“原子”(即,常规)签名组合成实际上任何单调的“代言公式”(比简单的分离具有更大的表达能力)来概括该概念。验证者仅看到背书对于所述公式有效,而不是如何满足公式。作为一种特殊情况,网状签名将环形签名功能扩展到证书链。当寻求匿名的签名者希望隐藏在一个由不合作的人组成的人群中时,这些人甚至都没有公开的签名验证密钥,这很有用。我们在公共随机字符串模型中基于双线性映射给出了一种有效的线性大小构造。我们的网状签名实现了永久的完美匿名性-环形签名的典型举报用例的当务之急-并且,在特殊情况下,无需随机预言或可信任的设置权限即可生成第一个无条件的匿名环形签名。不可否认是通过对SDH假设(称为Poly-SDH)的适度扩展而实现的,我们对此进行了精心介绍和论证。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号