引用本文:周彦伟,杨波,王青龙.安全的无双线性映射的无证书签密机制.软件学报,2017,28(10):2757-2768
【打印本页】   【下载PDF全文】   查看/发表评论  【EndNote】   【RefMan】   【BibTex】
←前一篇|后一篇→ 过刊浏览    高级检索
本文已被:浏览 2840次   下载 5404 本文二维码信息
码上扫一扫!
分享到: 微信 更多
安全的无双线性映射的无证书签密机制
周彦伟1,2, 杨波1,2, 王青龙3
1.陕西师范大学 计算机科学学院, 陕西 西安 710062;2.信息安全国家重点实验室(中国科学院 信息工程研究所), 北京 100093;3.长安大学 信息工程学院, 陕西 西安 710064
摘要:
无证书签密是能够同时提供无证书加密和无证书签名的一种非常重要的密码学原语.近年来,多个无证书签密方案相继被提出,并声称他们的方案是可证明安全的.但是,通过给出具体的攻击方法,指出现有的一些无证书签密机制并不具备其所声称的安全性.针对上述问题,提出一种无双线性映射的高效无证书签密方案,并在随机谕言机模型下,基于计算性Diffie-Hellman问题和离散对数问题对所提方案的安全性进行了证明.同时,该方案还具有不可否认性和公开验证性等安全属性.与其他传统无证书签密方案相比,由于未使用双线性映射运算,在具有更高计算效率的同时,该方案的安全性更优.
关键词:  无证书签密  随机谕言机  无双线性映射  可证明安全性
DOI:10.13328/j.cnki.jos.005150
分类号:
基金项目:国家自然科学基金(61572303,61772326);国家重点研发计划“网络空间安全”重点专项(2017YFB0802003,2017YFB0802004);“十三五”国家密码发展基金(MMJJ20170216);中国科学院信息工程研究所信息安全国家重点实验室开放课题(2017-MS-03);中央高校基本科研业务费项目(GK201702004)
Secure Certificateless Signcryption Scheme without Bilinear Pairing
ZHOU Yan-Wei1,2, YANG Bo1,2, WANG Qing-Long3
1.School of Computer Science, Shaanxi Normal University, Xi'an 710062, China;2.State Key Laboratory of Information Security (Institute of Information Engineering, The Chinese Academy of Sciences), Beijing 100093, China;3.School of Information Engineering, Chang'an University, Xi'an 710064, China
Abstract:
Certificateless signcryption is a useful cryptographic primitive which simultaneously provides the functionalities of certificateless encryption and certificateless signature.In the past few years, some certificateless signcryption schemes have been proposed, and claimed to be provably secure.Unfortunately, concrete attacks can be made that indicate that some existing certificateless signcryption schemes are not secure.To overcome these disadvantages, an efficient certificateless signcryption scheme without bilinear pairings is proposed.The proposal is provably secure in the random oracle model based on the computational Diffie-Hellman problem and discrete logarithm problem, and also has the security properties such as non-repudiation and public verifiability.Additionally, compared with other existing certificateless signcryption schemes in the computational complexity, the proposed method is more efficient and secure due to the lack of bilinear pairings.
Key words:  certificateless signcryption  random oracle  without bilinear pairing  provable security