J4 ›› 2014, Vol. 41 ›› Issue (2): 71-78.doi: 10.3969/j.issn.1001-2400.2014.02.012

• Original Articles • Previous Articles     Next Articles

Forward and backward secure signature scheme

WANG Mingwei;HU Yupu   

  1. (State Key Lab. of Integrated Service Networks, Xidian Univ., Xi'an  710071, China)
  • Received:2012-11-25 Online:2014-04-20 Published:2014-05-30
  • Contact: WANG Mingwei E-mail:ychmingwei007@163.com

Abstract:

A new signature scheme based solely on the MQ-problem is presented, which satisfies the following properties:(1) Forward security, which means that a compromise of a key now does not necessarily expose old traffic. (2) Backward security, which means that a compromise of a key now does not necessarily expose future traffic. We do not have to revoke our public key and re-issue a new key system everytime we detect a key leak. We use two fundamental tools, such as zero knowledge proof and mulitivariate public crypto. Our basic model is Koichi Sakumoto's identifcation scheme which is transformed by parallel processing and Fiat-Shamir transforming. What is novel about our approach is the key updating algortithm, which makes our scheme preserve backward security besides the forward property. Finally, we prove that our scheme satisfies the security under the random oracle model.

Key words: MQ-problem, zero knowledge, identification scheme, forward securrity, backward security, digital signature, random oracle model

CLC Number: 

  • TP309