Journal of Beijing University of Posts and Telecommunications

  • EI核心期刊

JOURNAL OF BEIJING UNIVERSITY OF POSTS AND TELECOM ›› 2014, Vol. 37 ›› Issue (3): 48-52.doi: 10.13190/j.jbupt.2014.03.010

Previous Articles     Next Articles

Improved for Certificate-Based Signature Scheme

NONG Qiang, HUANG Ru-fen, HUANG Zhen-jie   

  1. Department of Computer Science, Minnan Normal University, Fujian Zhangzhou 363000, China
  • Received:2013-08-05 Online:2014-06-28 Published:2014-06-08

Abstract:

A forgery attack on Yang bo et al.'s certificate-based signature scheme was presented. It is found that the "honest-but-curious" certificate authority could forge a valid signature in any message on behalf of any user by choosing random parameters without knowing the secret value of the user. Analysis describes that the reason of insecurity of the original scheme is that the commitment value R computed in the stage of certificate generation is not used as an input of the hash function in the stage of signature generation. An improved scheme was proposed by adding R to the hash function. The improved scheme is as efficient as the original scheme. It is provably secure under the intractability of discrete logarithm problem.

Key words: certificate-based signature, forgery attack, certificate authority, Hash function, discrete logarithm problem

CLC Number: