Zero-pole cancellation for identity-based aggregators:a constant-size designated verifier-set signature  

在线阅读下载全文

作  者:E CHEN Yan ZHU Changlu LIN Kewei LV 

机构地区:[1]School of Computer and Communication Engineering,University of Science and Technology Beijing,Beijing,100083,China [2]College of Mathematics and Informatics,Fujian Normal University,Fuzhou,350117,China [3]Fujian Provincial Key Lab of Network Security&Cryptology,Fujian Normal University,Fuzhou,350007,China [4]Institute of Information Engineering,DCS Research Center,Chinese Academy of Sciences,Beijing,100093,China

出  处:《Frontiers of Computer Science》2020年第4期197-210,共14页中国计算机科学前沿(英文版)

基  金:The work was supported by the National Key Technologies R&D Programs of China(2018YFB1402702 and 2017YFB0802500);the“13th”Five-Year National Cryptographic Development Foundation(MMJJ20180208);NSFC-Genertec Joint Fund For Basic Research(U1636104);the National Natural Science Foundation of China(Grant Nos.61572132,61972032 and U1705264).

摘  要:In this paper we present a designated verifier-set signature(DVSS),in which the signer allows to designate many verifiers rather than one verifier,and each designated verifier can verify the validity of signature by himself.Our research starts from identity-based aggregator(IBA)that compresses a designated set of verifier’s identities to a constant-size random string in cryptographic space.The IBA is constructed by mapping the hash of verifier’s identity into zero or pole of a target curve,and extracting one curve’s point as the result of aggregation according to a specific secret.Considering the different types of target curves,these two IBAs are called as zeros-based aggregator and poles-based aggregator,respectively.Based on them,we propose a practical DVSS scheme constructed from the zero-pole cancellation method which can eliminate the same elements between zeros-based aggregator and poles-based aggregator.Due to this design,our DVSS scheme has some distinct advantages:(1)the signature supporting arbitrary dynamic verifiers extracted from a large number of users;and(2)the signature with short and constant length.We rigorously prove that our DVSS scheme satisfies the security properties:correctness,consistency,unforgeability and exclusivity.This is a preview of subscription content,log in to check access.

关 键 词:designated verifier-set signature aggregator UNFORGEABILITY exclusivity 

分 类 号:TN918[电子电信—通信与信息系统]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象