作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2007, Vol. 33 ›› Issue (06): 116-117. doi: 10.3969/j.issn.1000-3428.2007.06.040

• 安全技术 • 上一篇    下一篇

代理盲签名方案的安全性分析

赵泽茂1,李继国2,朱隆海3,李 斌2   

  1. ( 1. 杭州电子科技大学通信工程学院,杭州 310018;2. 河海大学计算机及信息工程学院,南京 210098; 3. 北京邮电大学信息安全中心,北京 100876)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2007-03-20 发布日期:2007-03-20

Security Analysis of Proxy Blind Signature Scheme

ZHAO Zemao1, LI Jiguo2, ZHU Longhai3, LI Bin2   

  1. (1. School of Communication Engineering, Hangzhou Dianzi University, Hangzhou 310018; 2. College of Computer and Information Engineering, Hohai University, Nanjing 210098; 3. Information Security Center, Beijing University of Posts & Telecommunications, Beijing 100876)
  • Received:1900-01-01 Revised:1900-01-01 Online:2007-03-20 Published:2007-03-20

摘要: 代理签名是指原始签名人将签名权力委托给代理签名人,由代理签名人代表原始签名人对消息进行签名。盲签名是指签名人不知道所签消息的具体内容。Zhao和Liu结合代理签名和盲签名的特性提出了一种代理盲签名,该文指出Zhao和Liu提出的代理盲签名方案存在广泛的伪造攻击、原始签名人的伪造攻击和消息拥有者的伪造攻击等安全缺陷,并提出了改进的方案,改进后的方案可以有效地避免原始签名人和消息拥有者的伪造攻击。

关键词: 代理签名, 盲签名, 代理盲签名, 安全分析

Abstract: Proxy signature allows an original signer to delegate his/her signing power to a proxy signer such that the proxy signer can sign messages on behalf of the original signer. Blind signature allows a user to have a given message signed by the signer without revealing any information about the message. Zhao et al recently proposes a proxy blind signature on the combination of the proxy signature and blind signature. However, this paper shows that the proposed scheme suffers with a universal forgery attack, original signer’s forgery attack and message owner’s forgery attack. This paper proposes an improved scheme that can avoid original signer’s and message owner’s forgery attack effectively and efficiently.

Key words: Proxy signature, Blind signature, Proxy blind signature, Security analysis