On cryptographic protocols employing asymmetric pairings - The role of Ψ revisited
On cryptographic protocols employing asymmetric pairings - The role of Ψ revisited
复制标题
DOI:
10.1016/j.dam.2011.04.021
复制
发表时间:
2011-08
期刊:
影响因子:
--
通讯作者:
S. Chatterjee;A. Menezes
中科院分区:
文献类型:
--
作者:
S. Chatterjee;A. Menezes
Asymmetric pairings e: G 1× G 2→ G T for which an efficiently-computable isomorphism ψ: G 2→ G 1 is known are called Type 2 pairings; if such an isomorphism ψ is not known then e is called a Type 3 pairing. Many cryptographic protocols in the asymmetric setting rely on the existence of ψ for their security reduction while some use it in the protocol itself. For these reasons, it is believed that some of these protocols cannot be implemented with Type 3 pairings, while for some the security reductions either cannot be transformed to the Type 3 setting or else require a stronger complexity assumption. Contrary to these widely held beliefs, we argue that Type 2 pairings are merely inefficient implementations of Type 3 pairings, and appear to offer no benefit for protocols based on asymmetric pairings from the point of view of functionality, security, and performance.