引用本文:宋 焰.多一次Paillier求逆问题与并发安全的鉴别方案.软件学报,2008,19(7):1758-1765
【打印本页】   【下载PDF全文】   查看/发表评论  【EndNote】   【RefMan】   【BibTex】
←前一篇|后一篇→ 过刊浏览    高级检索
本文已被:浏览 4694次   下载 6824 本文二维码信息
码上扫一扫!
分享到: 微信 更多
多一次Paillier求逆问题与并发安全的鉴别方案
宋 焰1,2
1.中国科学院 软件研究所 计算机科学国家重点实验室,北京 100190;2.中国科学院 研究生院,北京 100049
摘要:
从计算难解性的角度重新考察Paillier的陷门单向函数,并提出多一次Paillier求逆问题这一关于Paillier求逆问题的推广问题.从计算难解性的角度考察了多一次Paillier求逆问题与Bellare等人提出的多一次RSA求逆问题之间的关系,并证明了在计算难解性的意义上,多一次Paillier求逆问题等价于多一次RSA求逆问题.以此为基础,进而提出一种新的鉴别方案,并证明在多一次Paillier求逆问题的难解性假设下这一鉴别方案具备并发安全性.
关键词:  陷门单向函数  Paillier求逆  RSA问题  难解性  鉴别方案  并发安全性
DOI:
分类号:
基金项目:Supported by the National Natural Science Foundation of China under Grant No.60310213 (国家自然科学基金重大国际(地区)合作研究项目); the National Natural Science Foundation of China under Grant No.60325206 (国家自然科学基金杰出青年基金项目)
One-More Paillier Inversion and Concurrent Secure Identification
SONG Yan
Abstract:
This paper revisits Paillier's trapdoor one-way function, focusing on the computational problem underlying its one-wayness. A new computational problem called the one-more Paillier inversion problem is formulated. It is a natural extension of Paillier inversion problem to the setting where adversaries have access to an inversion oracle and a challenge oracle. The relation between the one-more Paillier inversion problem and the one-more RSA problem introduced by Bellare, et al. It is shown that the one-more Paillier inversion problem is hard if and only if the one-more RSA problem is hard. Based on this, a new identification scheme is proposed. It is shown that the assumed hardness of the one-more Paillier inversion problem leads to a proof that the proposed identification scheme achieves security against concurrent impersonation attack.
Key words:  trapdoor one-way function  Pallier inversion  RSA problem  hardness  identification  concurrent security

引用本文:
【打印本页】   【下载PDF全文】   查看/发表评论  【EndNote】   【RefMan】   【BibTex】
←前一篇|后一篇→ 过刊浏览    高级检索
本文已被:浏览次   下载  
分享到: 微信 更多
摘要:
关键词:  
DOI:
分类号:
基金项目:
Abstract:
Key words: