Verifier-local revocation group signatures with time-bound keys

Verifier-local revocation group signatures with time-bound keys
复制标题

DOI:
10.1145/2414456.2414470
复制
发表时间:
2012-05
期刊:
--
影响因子:
--
通讯作者:
Cheng-Kang Chu;Joseph K. Liu;Xinyi Huang;Jianying Zhou
Cheng-Kang Chu;Joseph K. Liu;Xinyi Huang;Jianying Zhou
中科院分区:
其他
文献类型:
--
作者:
Cheng-Kang Chu;Joseph K. Liu;Xinyi Huang;Jianying Zhou

文献摘要

被引文献

相似文献

群签名中的一个突出问题是撤销群成员的签名能力。为了解决这个问题,组管理员可以只向签名验证者发送撤销消息,称为具有验证者本地撤销的组签名(VLR)。在现有的VLR设计中,撤销检查的成本随着撤销消息的大小线性增长。本文将时间约束密钥引入群签名中,以减少撤销消息的大小,加快撤销检验的速度。在新的概念中,每个组成员的秘密密钥与到期日期相关联,并且验证者可以告诉(以恒定的成本)是否使用过期的密钥产生组签名。因此,撤销消息仅需要提供关于被过早撤销的组成员的信息(例如,由于密钥泄露)而不是具有过期密钥的那些。这将导致在提前撤销的成员仅是被撤销成员的一小部分的情况下显著节省撤销检查。根据这种方法,我们给出了两个具体的设计与VLR的群签名,以证明效率和隐私之间的权衡。
A prominent issue in group signatures is revoking a group member's signing capability. To solve this issue, the group manager can send revocation messages only to signature verifiers, known as group signatures with verifier-local revocation (VLR). In existing VLR designs, the cost of revocation check grows linearly with the size of revocation messages. This paper introduces time-bound keys into group signatures to reduce the size of revocation messages and speed up the revocation check. In the new notion, the secret key of each group member is associated with an expiration date, and verifiers can tell (at a constant cost) whether or not a group signature is produced using an expired key. Consequently, revocation messages only need to provide the information about group members revoked prematurely (e.g., due to key compromise) but not those with expired keys. This will lead to a significant saving on revocation check in situations where prematurely revoked members are only a small fraction of revoked members. Following this approach, we give two concrete designs of group signatures with VLR to demonstrate the trade-offs between efficiency and privacy.