DocumentCode :
1451767
Title :
Efficient Sequential Aggregate Signed Data
Author :
Neven, Gregory
Author_Institution :
IBM Res. - Zurich, Rüschlikon, Switzerland
Volume :
57
Issue :
3
fYear :
2011
fDate :
3/1/2011 12:00:00 AM
Firstpage :
1803
Lastpage :
1815
Abstract :
The concept of sequential aggregate signatures (SAS), proposed by Lysyanskaya, Micali, Reyzin, and Shacham at Eurocrypt 2004, is generalized to a new primitive called sequential aggregate signed data (SASD) that tries to minimize the total amount of transmitted data, rather than just signature length. New SAS and SASD schemes are presented that offer numerous advantages over the scheme of Lysyanskaya Most importantly, the schemes can be instantiated with uncertified claw-free permutations, thereby allowing implementations based on low-exponent RSA and factoring, and drastically reducing signing and verification costs. The schemes support aggregation of signatures under keys of different lengths, and the SASD scheme even has as little as 160 bits of bandwidth overhead. Finally, a multi-signed data scheme is presented that, when compared to the state-of-the-art multi-signature schemes, is the first scheme with noninteractive signature generation not based on pairings. All of the constructions are proved secure in the random oracle model based on families of claw-free permutations.
Keywords :
public key cryptography; SAS scheme; SASD scheme; low-exponent RSA; multisignature schemes; multisigned data scheme; noninteractive signature generation; random oracle model; sequential aggregate signatures; sequential aggregate signed data; signature aggregation; uncertified claw-free permutations; Aggregates; Algorithm design and analysis; Bandwidth; Encoding; Public key; Synthetic aperture sonar; Authentication; public-key cryptosystems;
fLanguage :
English
Journal_Title :
Information Theory, IEEE Transactions on
Publisher :
ieee
ISSN :
0018-9448
Type :
jour
DOI :
10.1109/TIT.2010.2091434
Filename :
5714258
Link To Document :
بازگشت