首页> 外国专利> Group signature with local revocation verification with capacity for lifting anonymity

Group signature with local revocation verification with capacity for lifting anonymity

机译:具有本地撤销验证的组签名,具有解除匿名的能力

摘要

The cryptographic scheme subdivides time into periods with an index j=0, 1, 2, etc. A public key indicates elements u and v of a first cyclic group G1 of prime order p and, for each period j, an integer sj between 0 and p−1 and elements g1,j of the group G1 and g2,j, wj and hj of another cyclic group G2 of order p. The private key of a member of the group indicates an integer xi between 0 and p−1 and, for each period j, an element Ai,j of the group G1 such that Ai,n=[Ai,n-1/g1,n-1]1/(xi−sn) for 1≦n≦j. To sign a message during a period j≧0, the member selects two integers α and β between 0 and p−1, calculates T1=uα, T2=Ai,j·vα, S1=g2,jβ and S2=e(Ai,j, hj)β where e(., .) is a bilinear map of G1×G2 onto GT, and determines according to the message the data that justify the fact that the elements T1, T2, S1 and S2 are correctly formed with knowledge of the private key of the member for the period with index j.
机译:密码方案将时间分为索引j = 0、1、2等的时间段。公共密钥指示素数为p的第一循环组G 1 的元素u和v,对于每个循环元素周期j,0和p−1之间的整数s j 和组G 1 和g 的元素g 1,j p的另一个循环组G 2 的2,j ,w j 和h j 。组成员的私钥表示0到p-1之间的整数x i ,对于每个周期j,该组的元素A i,j G 1 使得A i,n = [A i,n-1 / g 1,n-1 ] 1 /(x i -s n 表示1≦n≦j。为了在j≥0的期间内对消息进行签名,成员选择0和p-1之间的两个整数α和β,计算T 1 = u α,T 2 = A i,j ·v α,S 1 = g 2,j β和S 2 = e(A i,j ,h j β其中e(。,。)是G 1 ×G 2 到G T 上的双线性映射,并根据消息确定证明以下事实的数据:元素T 1 ,T 2 ,S 1 和S 2 知道成员在索引j期间的私钥。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号