Identity-Based Multisignature with Message Recovery
نویسندگان
چکیده
We present a new notion of short identity-based multisignature scheme with message recovery. We propose a concrete identity-based multisignature with message recovery scheme based on bilinear pairing in which multiple signers can generate a constant size multisignature on same message regardless of the number of signers. There is no requirement to transmit the original message to the verifier, since the original message can be recovered from the multisignature. Therefore, this scheme minimizes the total length of the original message and the appended multisignature. The proposed scheme is proven to be existentially unforgeable against adaptively chosen message attacks in the random oracle model under the assumption that the Computational Diffie-Hellman problem is hard.
منابع مشابه
Identity Based Multisignatures
This paper presents identity based serial and parallel multisignature schemes using bilinear pairings. Our serial multisignature scheme requires a forced verification at every level to avoid the overlooking of the predecessors’ signatures. However, in parallel multisignature scheme the verification of individual signatures is performed by a designated clerk. We show that our schemes are secure ...
متن کاملCryptanalysis of digital multisignature schemes for authenticating delegates in mobile code systems
In this paper, we motivate the need for efficient multisignature schemes in delegated mobile services. With the schemes, delegates can be identified and delegated accesses can be controlled. First, we give a new digital signature scheme with message recovery. Based on the digital signature scheme, two digital multisignature schemes are proposed: the parallel multisignature scheme and the serial...
متن کاملA General Model of Multisignature Schemes with Message Flexibility, Order Flexibility, and Order Verifiability∗∗
SUMMARY Multisignature scheme realizes that plural users generate the signature on a message, and that the signature is verified. Various studies on multisignature have been proposed([2], [6], [11], [15], [18]). They are classified into two types: RSA([13])-based multisignature([6], [11]), and discrete logarithm problem(DLP) based multisig-nature([2], [15], [18]), all of which assume that a mes...
متن کاملTitle A Multisignature Scheme with Message Flexibility , Order Flexibility and Order Verifiability
Multisignature scheme realizes that plural users generate the signature on a message, and that the signature is veri ed. Various studies on multisignature have been proposed([4, 13, 11, 8, 1]). They are classi ed into two types: RSA([9])-based multisignature([4, 8]), and discrete logarithm problem(DLP) based multisignature([13, 11, 1]), all of which assume that a message is xed beforehand. In a...
متن کاملA Multisignature Scheme with Message Flexibility, Order Flexibility and Order Verifiability
Multisignature scheme realizes that plural users generate the signature on a message, and that the signature is veri ed. Various studies on multisignature have been proposed([4, 13, 11, 8, 1]). They are classi ed into two types: RSA([9])-based multisignature([4, 8]), and discrete logarithm problem(DLP) based multisignature([13, 11, 1]), all of which assume that a message is xed beforehand. In a...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2013