Journal of Xidian University ›› 2023, Vol. 50 ›› Issue (2): 161-168.doi: 10.19665/j.issn1001-2400.2023.02.016

• Cyberspace Security & Others • Previous Articles     Next Articles

Identity-based traceable ring signature scheme on lattice

YE Qing1(),CHEN Qingqing1(),DOU Yongpeng2(),ZHANG Jing1,TANG Yongli1()   

  1. 1. School of Software,Henan Polytechnic University,Jiaozuo 454003,China
    2. The Seventh Military Representative Office of the Military Representative Bureau of the Army Equipment Department in Xi’an,Xi’an 710065,China
  • Received:2022-07-28 Online:2023-04-20 Published:2023-05-12

Abstract:

The ring signature is a special digital signature that can provide unconditional anonymous protection for signers,and a traceable ring signature is a variant of the ring signature,which aims to prevent signers from abusing the anonymity of the ring signature,that is,the anonymity provided by the traceable ring signature for signers is not unconditional,which will lead to the identity of signers being disclosed under certain behaviors of the signer.The traceable ring signature plays an important role in an electronic voting system and an electronic cash system.Aiming at the present situation that traceable ring signature schemes on lattice are based on the PKI system and have a complex burden of digital certificate management,this paper combines identity-based cryptography with the traceable ring signature on lattice and proposes the first identity-based traceable ring signature scheme on the lattice.Different from the previous traceable ring signature schemes,the proposed scheme is constructed according to the framework of Baum et al.’s linkable ring signature scheme on lattice and based on the techniques of preimage sampling and reject sampling,etc.,thus avoiding the use of cumbersome zero-knowledge proofs.Under the random oracle model,it is proved that the proposed scheme can meet the tag-linkability,anonymity and exculpability,and that the security can be reduced to SIS and ISIS problems.In addition,compared with the related schemes,the proposed scheme also has some advantages in time overhead and storage overhead.

Key words: lattice, identity-based cryptography, traceable ring signature, small integer solution problem

CLC Number: 

  • TP309