群签名的准形式化定义及实现方案
A QUASI-FORMAL DEFINITION AND IMPLEMENTATION SCHEME OF GROUP SIGNATURE
-
摘要: 1998年 ,L ee和 Chang提出一种基于离散对数问题的群签名方案 .然而 ,该方案不具备不可链接性 :一旦某个群签名的签名者被识别 ,该签名者所有以前的群签名都将泄露 .Tseng和 Jan给出的改进方案也被 Sun证明是可链接的 ;此外 ,Joye,L ee和 Hwang指出 L ee- Chang和 Tseng- Jan方案有一个安全漏洞 .之后 ,Tseng和 Jan对其方案进行了修改 ,弥补了该安全漏洞 ,同时也避开了 Sun的攻击 ,但又失去了一个重要性质——可证实性 .在出现争执时 ,群权威可以识别出签名者 ,却无法向验证方证实 .在此给出了群签名方案的准形式化定义 ,并综合 Tseng和 Jan的两种方案 ,提出一种改进方案 ,对其进行了简要分析 .Abstract: In 1998, Lee and Chang proposed a group signature scheme based on the discrete logarithm problem. However, their scheme lacks unlinkability: once one group signature is identified, all the previous signatures made by the same signer are also identified. To solve this problem, Tseng and Jan gave an improved scheme, which was proved still linkable by Sun. Moreover, Joye, Lee and Hwang pointed out that there was a fatal error in the security of the Lee Chang group signature scheme and its derivatives (including Tseng Chang scheme). Later, Tseng and Jan made a modification of their previous schemes. Although compensating this security leak and making Sun’s linkage attack unavailable, an important property, verifiability, is lost. In the case of a dispute, the group authority can identify the signer, but he/she is unable to convince other verifiers about that. In this paper, a quasi formal definition of group signature is presented and a new implementation scheme is given based on Tseng and Jan’s two schemes in addition. simple analysis is also made of the new scheme.
下载: