作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2006, Vol. 32 ›› Issue (16): 146-147. doi: 10.3969/j.issn.1000-3428.2006.16.055

• 安全技术 • 上一篇    下一篇

一类前向安全数字签名方案的分析与改进

夏 峰;谢冬青;匡华清   

  1. 湖南大学计算机与通信学院,长沙 410082
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2006-08-20 发布日期:2006-08-20

Analysis and Improvement for A Class of Forward Security Digital Signature Scheme

XIA Feng;XIE Dongqing; KUANG Huaqing   

  1. College of Computer and Communication, Hunan University, Changsha 410082
  • Received:1900-01-01 Revised:1900-01-01 Online:2006-08-20 Published:2006-08-20

摘要: 已有的前向安全签名方案大都基于因子分解困难性问题。吴克力和秦波等人分别提出了一种基于离散对数难题的前向安全签名方案,但该类方案中时段参数在验证过程并不是一个有效的参数,若某个时段的私钥泄露,可用该私钥来伪造在此以前的任何时间段的签名,因而该类方案并不具备前向安全性。该文在吴方案的基础上提出了一种新的基于ElGamal体制的前向安全签名方案,该方案将当前私钥隐藏在签名中,验证时必须有效使用时段参数,以确保签名具有前向安全性。该方案中所用方法也适用于改进秦的方案。

关键词: 前向安全, ElGamal签名, 数字签名

Abstract: Forward security digital signature schemes existed are mostly based on difficulty of factoring. Qin Bo and Wu Keli et al. proposed a forward security digital signature scheme based on discrete logarithm respectively. This paper points out this class of scheme is not forward secure, because its time-parameter is not a valid parameter when its validity is verified. If a secret key is revealed, adversary can forge a valid digital signature in any time period with the current secret key. This paper proposes a new forward security signature scheme based on ElGamal scheme. The scheme embeds the current private key in the signature, and time-parameter is necessary when its validity is verified. The method in the new scheme can also be applied to Qin’s scheme.

Key words: Forward security, ElGamal signature, Digital signature