作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2012, Vol. 38 ›› Issue (16): 134-137. doi: 10.3969/j.issn.1000-3428.2012.16.034

• 安全技术 • 上一篇    下一篇

针对一类无证书签名方案的攻击及改进

郭玲玲,林昌露,张胜元   

  1. (福建师范大学数学与计算机科学学院,福州 350007)
  • 收稿日期:2011-08-17 修回日期:2011-10-15 出版日期:2012-08-20 发布日期:2012-08-17
  • 作者简介:郭玲玲(1985-),女,硕士,主研方向:密码学;林昌露,博士;张胜元,教授、博士
  • 基金资助:
    国家自然科学基金资助项目(11026008);福建省自然科学基金资助项目(2011J05147);福建省教育厅基金资助项目(JB11017)

Attack and Improvement for Certificateless Signature Scheme

GUO Ling-ling, LIN Chang-lu, ZHANG Sheng-yuan   

  1. (School of Mathematics and Computer Science, Fujian Normal University, Fuzhou 350007, China)
  • Received:2011-08-17 Revised:2011-10-15 Online:2012-08-20 Published:2012-08-17

摘要: 苏万力等人提出的无证书签名方案(江苏大学学报,2009年第4期)中存在公钥替换攻击的安全问题,敌手可以通过替换签名者的公钥对任意的消息进行签名伪造。针对该问题,提出一种改进的无证书签名方案,并对签名验证算法进行简化。分析结果表明,改进方案能抵抗公钥替换攻击,在随机预言机模型下,还能抵抗适应性选择消息攻击下的存在性伪造。

关键词: 数字签名, 无证书签名, 公钥替换攻击, 双线性对, 随机预言模型

Abstract: For the security problem, which is insecure against public-key replacement attack, on the certificateless signature scheme proposed by Su et al.’s, this paper proposes an improved certificateless signature scheme. The proposed scheme simplifies the process of verification. Analysis results show that the improved scheme is secure against public-key replacement attack and is provably secure against existential forgery under adaptively chosen message attack in the random oracle model.

Key words: digital signature, certificateless signature, public-key replacement attack, bilinear pairings, random oracle model

中图分类号: