On the performance, feasibility, and use of forward-secure signatures

On the performance, feasibility, and use of forward-secure signatures
复制标题

DOI:
10.1145/948109.948130
复制
发表时间:
2003-10
期刊:
--
影响因子:
--
通讯作者:
Eric Cronin;S. Jamin;T. Malkin;P. Mcdaniel
Eric Cronin;S. Jamin;T. Malkin;P. Mcdaniel
中科院分区:
其他
文献类型:
--
作者:
Eric Cronin;S. Jamin;T. Malkin;P. Mcdaniel

文献摘要

被引文献

相似文献

前向安全签名(FSSs)作为缓解数字签名面临的密钥暴露的许多困难的潜在现实方式,最近受到密码理论界的广泛关注。然而,没有以前的作品已经探讨了这些建议的建设在现实世界中的应用程序的实际性能,也没有他们比较的FSS传统的,非前向安全,签名在非渐近的方式。我们提出了一个经验评估的几个FSS计划,着眼于不同类型的FSS之间的相对性能,以及FSS和传统的签名。我们的研究提供了以下贡献:第一,一个新的方法来比较签名方案的性能,第二,一个彻底的检查的实际性能的FSS。我们表明,在许多情况下,最好的FSS方案具有基本相同的性能,传统的计划,即使在最坏的情况下,只有2-4倍慢。另一方面,我们还表明,如果使用错误的FSS配置,性能可以慢几个数量级。我们的方法提供了一种方法来防止这种错误的配置,我们检查使用它的数字签名的常见应用程序。我们的结论是,不仅是前向安全签名是一个有用的理论结构,如以前的作品已经显示,但他们也是,当正确使用时,一个非常实用的解决方案,一些与现实世界中的应用程序中的关键暴露的问题。通过我们的指标和参考实现,我们为开发人员提供了有效使用FSS所需的工具。
Forward-secure signatures (FSSs) have recently received much attention from the cryptographic theory community as a potentially realistic way to mitigate many of the difficulties digital signatures face with key exposure. However, no previous works have explored the practical performance of these proposed constructions in real-world applications, nor have they compared FSS to traditional, non-forward-secure, signatures in a non-asymptotic way.We present an empirical evaluation of several FSS schemes that looks at the relative performance among different types of FSS as well as between FSS and traditional signatures. Our study provides the following contributions: first, a new methodology for comparing the performance of signature schemes, and second, a thorough examination of the practical performance of FSS. We show that for many cases the best FSS scheme has essentially identical performance to traditional schemes, and even in the worst case is only 2-4 times slower. On the other hand, we also show that if the wrong FSS configuration is used, the performance can be orders of magnitude slower. Our methodology provides a way to prevent such misconfigurations, and we examine common applications of digital signatures using it.We conclude that not only are forward-secure signatures a useful theoretical construct as previous works have shown, but they are also, when used correctly, a very practical solution to some of the problems associated with key exposure in real-world applications. Through our metrics and our reference implementation we provide the tools necessary for developers to efficiently use FSS.