首页 | 本学科首页   官方微博 | 高级检索  
     

一种无证书签名方案的安全性分析及其改进
引用本文:黄明军,杜伟章.一种无证书签名方案的安全性分析及其改进[J].计算机应用,2011,31(6):1536-1538.
作者姓名:黄明军  杜伟章
作者单位:长沙理工大学 计算机与通信工程学院,长沙 410114
摘    要:现在许多无证书签名方案过度依赖于密钥生成中心(KGC)的诚实性,所以当KGC失去诚信的时候这些方案也就失去了安全保证。通过对梁红梅等人(梁红梅,黄振杰.高效无证书签名方案的安全性分析与改进.计算机应用,2010,30(3):685-687)提出的无证书签名方案进行安全性分析,指出其方案不可抵抗消极不诚实KGC下的公钥替换攻击和积极不诚实的KGC攻击。针对该问题,采用由KGC生成用户公钥并公开的方法,对原方案进行了改进。安全性分析表明,改进后的方案可抵抗消极不诚实KGC下的公钥替换攻击,判别KGC的积极不诚实性行为和在随机预言机模型下可抵抗适应性选择消息攻击下的存在性伪造。

关 键 词:双线性对    无证书签名    公钥替换攻击    计算性Diffie-Hellman问题    逆运算Diffie-Hellman问题
收稿时间:2010-12-27
修稿时间:2011-01-17

Security analysis and improvement of a certificateless signature scheme
HUANG Ming-jun,DU Wei-zhang.Security analysis and improvement of a certificateless signature scheme[J].journal of Computer Applications,2011,31(6):1536-1538.
Authors:HUANG Ming-jun  DU Wei-zhang
Affiliation:College of Computer and Communication Engineering, Changsha University of Science and Technology,Changsha Hunan 410114, China
Abstract:Nowadays, many centificateless signature schemes depend on the honesty of Key Generation Center (KGC) excessively, so they also lose security guarantees when the KGC is dishonest. By analyzing the security of the certificateless signature scheme proposed by Liang Hongmei et. al. in security analysis and improvement of efficient certificateless signature scheme publicated by Journal fo Computer Applications, 2010,30(3):685-687, where the authors pointed out that the scheme could not resist public key replacement attack under negative dishonest KGC and positive dishonest KGCs attacks. Aiming at these problems, the scheme was improved by the means that KGC generated the users public key and made it public. The analysis of security shows that the improved scheme is able to resist public key replacement attack under negative dishonest KGC, thus successfully distinguishing the positive dishonesty of KGC,and resisting existential forgery on adaptively chosen message attack under the random oracle model.
Keywords:
本文献已被 CNKI 万方数据 等数据库收录!
点击此处可从《计算机应用》浏览原始摘要信息
点击此处可从《计算机应用》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号