Impossibility on the Schnorr Signature from the One-more DL Assumption in the Non-programmable Random Oracle Model
Impossibility on the Schnorr Signature from the One-more DL Assumption in the Non-programmable Random Oracle Model
复制标题
DOI:
10.1587/transfun.2020dmp0008
复制
发表时间:
2020
期刊:
影响因子:
--
通讯作者:
Masayuki Fukumitsu;Shingo Hasegawa
中科院分区:
文献类型:
--
作者:
Masayuki Fukumitsu;Shingo Hasegawa
SUMMARY TheSchnorrsignatureisoneoftherepresentativesignature schemes and its security was widely discussed. In the random oracle model (ROM), it is provable from the DL assumption, whereas there is negative circumstantial evidence in the standard model. Fleischhacker, Jager, andSchrödershowedthatthetightsecurityoftheSchnorrsignatureis unprovable from a strong cryptographic assumption, such as the One-More DL (OM-DL) assumption and the computational and decisional Diffie-Hellman assumption, in the ROM via a generic reduction as long as the underlying cryptographic assumption holds. However, it remains open whether or not the impossibility of the provable security of the Schnorr signaturefromastrongassumptionviaa non-tight andreasonablereduction. Inthispaper,weshowthatthesecurityoftheSchnorrsignatureisunprovable fromtheOM-DLassumptioninthenon-programmableROMaslongastheOM-DLassumptionholds.Ourimpossibilityresultisprovenviaa non-tightTuringreduction.