高级检索
    李如鹏, 于 佳, 李国文, 李大兴. 高效撤消成员的前向安全群签名方案[J]. 计算机研究与发展, 2007, 44(7): 1219-1226.
    引用本文: 李如鹏, 于 佳, 李国文, 李大兴. 高效撤消成员的前向安全群签名方案[J]. 计算机研究与发展, 2007, 44(7): 1219-1226.
    Li Rupeng, Yu Jia, Li Guowen, Li Daxing. Forward Secure Group Signature Schemes with Efficient Revocation[J]. Journal of Computer Research and Development, 2007, 44(7): 1219-1226.
    Citation: Li Rupeng, Yu Jia, Li Guowen, Li Daxing. Forward Secure Group Signature Schemes with Efficient Revocation[J]. Journal of Computer Research and Development, 2007, 44(7): 1219-1226.

    高效撤消成员的前向安全群签名方案

    Forward Secure Group Signature Schemes with Efficient Revocation

    • 摘要: 群成员的撤消和如何处理密钥泄漏是设计群签名方案中的两个重要问题,到目前为止,同时解决这两个问题的群签名方案为数不多且尚存在不足.以ACJT群签名方案为基础,提出了两个新的群签名方案,其最大特点是同时具有高效撤消性和前向安全性.其中方案Ⅰ具有较高的密钥演化效率,但是群公钥长度、签名和验证算法的计算量和时间段个数线性相关,方案Ⅱ采用了另一种前向安全的思想,克服了方案Ⅰ的不足.两个方案较好地解决了基于累加器撤消方法存在的缺陷,支持可追溯的公开可撤消群成员身份并且签名具有向后不可联接性,签名和验证算法的计算量均独立于当前群成员个数和被撤消成员的个数.

       

      Abstract: How to efficiently revoke group membership and how to cope with key exposure are two important issues in designing group signature schemes. Up to now, there are few group schemes that can resolve the two problems at the same time. The common drawback of the previously proposed scheme is that the computational cost of verifying linearly depends on the number of the revoked group members. The revocation method based on accumulator has common drawback: previously signed signatures can not pass the verifying algorithm under the updated public value after the signer is revoked. Based on the ACJT group signature scheme, two new group signature schemes are proposed. The main trait is that they have efficiently revocable property and forward secure property at the same time. The evolution of secret key in scheme Ⅰ is more efficient. But the size of group public key and the computational cost of signing and verifying in scheme Ⅰ linearly depend on the number of time periods. Scheme Ⅱ adopts another forward secure method and overcomes this defect. Both the schemes tackle the drawback of the revocation method based on accumulator and support retroactively publicly revocable group membership with backward unlinkability. The computational cost of signing and verifying is independent of the number of the current group members and the revoked group members.

       

    /

    返回文章
    返回