摘 要:基于CS98加密方案和SDH假设,提出一种新的三元组(A,x,y)的零知识证明协议,并基于此协议构造了一种可证明安全的短群签名方案。该方案具有IND-CCA2完全匿名性,允许新成员动态加入,并且群管理员不能伪造任何成员的签名,具有不可陷害性。签名长度仅为1 534 bit。
Short group signature with full anonymity for large groups
MA Hai-ying1, WANG Zhan-jun2, ZHANG Ya-juan1
(1.College of Computer Science & Technology, Nantong University, Nantong Jiangsu 226019, China;2.School of Science, Nantong University, Nantong Jiangsu 226007, China)
Abstract:This paper presented a new zero-knowledge protocol for the triple(A,x,y), which was based on CS98 encryption and SDH assumption. Using this protocol as a building block,constructed a new short group signature, which was provable secure. The scheme was of IND-CCA2-full-anonymity,allowed new members to join in the group dynamically, and group mana-ger couldn’tforge any member’s signature, then the scheme satisfied non-frameability.The signature is only 153 4 bit in size.
Key words:short group signature; full anonymity; CS98 encryption; IND-CCA2 secure; non-frameability ......