Multi-Certification Signatures and Their Applications to Public Key Infrastructure
نویسندگان
چکیده
As the application of digital signature is progressed in real life, the situation of using digital signatures tends to become more complex. Depending on applications a user may need to generate multiple signatures for the same message with his multiple signing keys. But the general approach of generating multiple independent signatures is not efficient. To solve this problem, we propose multi-key signature scheme in which a signer generates a single signature for a message using his multiple signing keys all together. Traditionally a signature provides the authenticity of a message (linked to a key pair) and a certificate provides the authenticity of the key pair (linked to a signer, certified by a certification authority), and they are generated and verified independently. We propose a new digital signature scheme called multicertification signature in which a signer generates a signature on a message using his signing key and related certification information together, and then a verifier can verify not only the signer’s signature on the message, but also related certification information, in a highly combined manner. Finally, we apply the proposed multi-certification signature scheme to public key infrastructure (PKI) and privilege management infrastructure (PMI), and show that signing and verification operations can be executed in very efficient manner.
منابع مشابه
Self-certified Signatures
A digital signature provides the authenticity of a signed message with respect to a public key and a certificate provides the authorization of a signer for a public key. Digital signature and certificate are generated independently by different parties, but they are verified by the same verifier who wants to verify the signature. In the point of a verifier, verifying two independent digital sig...
متن کاملMobile Qualified Electronic Signatures and Certification on Demand
Despite a legal framework being in place for several years, the market share of qualified electronic signatures is disappointingly low. Mobile Signatures provide a new and promising opportunity for the deployment of an infrastructure for qualified electronic signatures. We analyzed two possible signing approaches (server based and client based signatures) and conclude that SIM-based signatures ...
متن کاملInteroperable and Flexible Digital Signatures for E-Government and E-Commerce
The paper at hand presents the concept of a flexible and interoperable public key infrastructure, the so called FlexiPKI. We show how this concept and its realization enables long term security in e-government and e-commerce. As a proof of concept, we describe the implementation of the FlexiPKI concept at the root certification authority in Germany.
متن کاملCertificateless Ring Signatures
Ring signature scheme is a cryptographic construct that enables a signer to sign on behalf of a group of n different people such that the verifier can only ensure someone in the group signed, but not exactly whom. Ring signatures are utilized in many security applications. It is tricky to deploy multi-user cryptographic construct due to the complexity involved by certificates. Specifically, rin...
متن کاملSimple Schnorr Multi-Signatures with Applications to Bitcoin
We describe a new Schnorr-based multi-signature scheme (i.e., a protocol which allows a group of signers to produce a short, joint signature on a common message), provably secure in the plain public-key model (meaning that signers are only required to have a public key, but do not have to prove knowledge of the private key corresponding to their public key to some certification authority or to ...
متن کامل