Efficient signcryption in the standard model

Efficient signcryption in the standard model
复制标题

DOI:
10.1002/cpe.1823
复制
发表时间:
2012-12
期刊:
Concurrency and Computation: Practice and Experience
影响因子:
--
通讯作者:
Fagen Li;Mingwu Zhang;T. Takagi
Fagen Li;Mingwu Zhang;T. Takagi
中科院分区:
其他
文献类型:
--
作者:
Fagen Li;Mingwu Zhang;T. Takagi

文献摘要

相似文献

签密是一种同时实现数字签名和公钥加密功能的密码原语,其成本显著低于传统的签名加密方法。签密相对于先签名后加密方法的性能优势使得签密在许多应用中非常有用,例如电子商务、移动的通信和智能卡。在本文中,我们提出了一个有效的签密方案在标准模型。证明了该方案满足机密性和强不可伪造性。与Tan的方案相比,|G| + |p|(320)位短密文,2| p| − |G|(160)位短私钥,以及|GT| + |G|(1184)位短公钥。此外,在Tan方案中,如果用户既是发送者又是接收者,则用户必须同时持有两个公钥/私钥对。我们的方案只需要一个公钥/私钥对,这是更实用的应用。版权所有© 2011约翰威利父子有限公司.
Signcryption is a cryptographic primitive that fulfills both the functions of digital signature and public key encryption simultaneously, at a cost significantly lower than that required by the traditional signature‐then‐encryption approach. The performance advantage of signcryption over the signature‐then‐encryption method makes signcryption useful in many applications, such as electronic commerce, mobile communications, and smart cards. In this paper, we propose an efficient signcryption scheme in the standard model. We prove that our scheme satisfies the confidentiality and strong unforgeability. Compared with the Tan's scheme, our scheme has | G | + | p | (320) bits shorter ciphertext, 2 | p | − | G | (160) bits shorter private key, and | GT | + | G | (1184) bits shorter public key. In addition, in the Tan's scheme, a user must hold two public key/private key pairs at one time if it were both sender and receiver. Our scheme only needs a public key/private key pair, which is more practical for application. Copyright © 2011 John Wiley & Sons, Ltd.