SiBIR: Signer-Base Intrusion-Resilient Signatures
SiBIR: Signer-Base Intrusion-Resilient Signatures
复制标题
DOI:
10.1007/3-540-45708-9_32
复制
发表时间:
2002-08
期刊:
影响因子:
--
通讯作者:
G. Itkis;Leonid Reyzin
中科院分区:
文献类型:
--
作者:
G. Itkis;Leonid Reyzin
We propose a new notion ofsigner-base intrusion-resilient (SiBIR) signatures, which generalizes and improves upon both forwardsecure [And97],[BM99] and key-insulated [DKXY02] signature schemes. Specifically, as in the prior notions, time is divided into predefined time periods (e.g., days); each signature includes the number of the time period in which it was generated; while the public key remains the same, the secret keys evolve with time. Also, as in key-insulated schemes, the user has two modules,signerandhome base: the signer generates signatures on his1own, and the base is needed only to help update the signer’s key from one period to the next.The main strength of intrusion-resilient schemes, as opposed to prior notions, is that they remain secure even afterarbitrarily manycompromises ofbothmodules, as long as the compromises are not simultaneous. Moreover, even if the intruder does compromise both modules simultaneously, she will still be unable to generate any signatures for the previous time periods.We provide an efficient intrusion-resilient signature scheme, provably secure in the random oracle model based on the strong RSA assumption. We also discuss how such schemes can eliminate the need for certificate revocation in the case of on-line authentication.