Formal Security Model of Multisignatures

Formal Security Model of Multisignatures
复制标题

DOI:
10.1007/11836810_11
复制
发表时间:
2006-08
期刊:
--
影响因子:
--
通讯作者:
Y. Komano;K. Ohta;A. Shimbo;S. Kawamura
Y. Komano;K. Ohta;A. Shimbo;S. Kawamura
中科院分区:
其他
文献类型:
--
作者:
Y. Komano;K. Ohta;A. Shimbo;S. Kawamura

文献摘要

相似文献

多重签名方案允许多个签名者合作为某个消息生成一个签名。多重签名的目的是减少签名的总长度和/或签名(验证)成本。本文首先讨论了群签名[1,4]之后的多重签名的形式化安全模型。该模型允许多重签名攻击者自适应地访问五个预言机。利用该模型,我们可以保证比存在模型[14,11,12]更一般的安全结果。其次,我们提出了一个使用无爪置换的多重签名方案。与现有的使用陷门单向置换(TWOP)的多重签名方案[11,12]相比,该方案可以减少签名长度,因为它的签名不需要随机串。我们还证明了所提出的方案是紧安全的形式化的安全模型,在随机预言模型。第三,我们讨论了多重签名方案[11,12]的安全性,使用TOWP与形式化的安全模型,以确认这些方案可以被证明是紧安全的。
A multisignature scheme enables multiple signers to cooperate to generate one signature for some message. The aim of the multisignatures is to decrease the total length of the signature and/or the signing (verification) costs. This paper first discusses a formal security model of multisignatures following that of the group signatures [1,4]. This model allows an attacker against multisignatures to access five oracles adaptively. With this model, we can ensure more general security result than that with the existence model [14,11,12]. Second, we propose a multisignature scheme using a claw-free permutation. The proposed scheme can decrease the signature length compared to those of existence multisignature schemes using a trapdoor one-way permutation (TWOP) [11,12], because its signing does not require the random string. We also prove that the proposed scheme is tightly secure with the formal security model, in the random oracle model. Third, we discuss the security of the multisignature schemes [11,12] using a TOWP with the formal security model to confirm that these schemes can be proven to be tightly secure.