Revocable identity-based proxy re-signature against signing key exposure.

Identity-based proxy re-signature (IDPRS) is a novel cryptographic primitive that allows a semi-trusted proxy to convert a signature under one identity into another signature under another identity on the same message by using a re-signature key. Due to this transformation function, IDPRS is very us...

Full description

Bibliographic Details
Main Authors: Xiaodong Yang, Chunlin Chen, Tingchun Ma, Jinli Wang, Caifen Wang
Format: Article
Language:English
Published: Public Library of Science (PLoS) 2018-01-01
Series:PLoS ONE
Online Access:http://europepmc.org/articles/PMC5868864?pdf=render
id doaj-af6a666221104ddcb409c7dc3c30cb08
record_format Article
spelling doaj-af6a666221104ddcb409c7dc3c30cb082020-11-24T20:48:09ZengPublic Library of Science (PLoS)PLoS ONE1932-62032018-01-01133e019478310.1371/journal.pone.0194783Revocable identity-based proxy re-signature against signing key exposure.Xiaodong YangChunlin ChenTingchun MaJinli WangCaifen WangIdentity-based proxy re-signature (IDPRS) is a novel cryptographic primitive that allows a semi-trusted proxy to convert a signature under one identity into another signature under another identity on the same message by using a re-signature key. Due to this transformation function, IDPRS is very useful in constructing privacy-preserving schemes for various information systems. Key revocation functionality is important in practical IDPRS for managing users dynamically; however, the existing IDPRS schemes do not provide revocation mechanisms that allow the removal of misbehaving or compromised users from the system. In this paper, we first introduce a notion called revocable identity-based proxy re-signature (RIDPRS) to achieve the revocation functionality. We provide a formal definition of RIDPRS as well as its security model. Then, we present a concrete RIDPRS scheme that can resist signing key exposure and prove that the proposed scheme is existentially unforgeable against adaptive chosen identity and message attacks in the standard model. To further improve the performance of signature verification in RIDPRS, we introduce a notion called server-aided revocable identity-based proxy re-signature (SA-RIDPRS). Moreover, we extend the proposed RIDPRS scheme to the SA-RIDPRS scheme and prove that this extended scheme is secure against adaptive chosen message and collusion attacks. The analysis results show that our two schemes remain efficient in terms of computational complexity when implementing user revocation procedures. In particular, in the SA-RIDPRS scheme, the verifier needs to perform only a bilinear pairing and four exponentiation operations to verify the validity of the signature. Compared with other IDPRS schemes in the standard model, our SA-RIDPRS scheme greatly reduces the computation overhead of verification.http://europepmc.org/articles/PMC5868864?pdf=render
collection DOAJ
language English
format Article
sources DOAJ
author Xiaodong Yang
Chunlin Chen
Tingchun Ma
Jinli Wang
Caifen Wang
spellingShingle Xiaodong Yang
Chunlin Chen
Tingchun Ma
Jinli Wang
Caifen Wang
Revocable identity-based proxy re-signature against signing key exposure.
PLoS ONE
author_facet Xiaodong Yang
Chunlin Chen
Tingchun Ma
Jinli Wang
Caifen Wang
author_sort Xiaodong Yang
title Revocable identity-based proxy re-signature against signing key exposure.
title_short Revocable identity-based proxy re-signature against signing key exposure.
title_full Revocable identity-based proxy re-signature against signing key exposure.
title_fullStr Revocable identity-based proxy re-signature against signing key exposure.
title_full_unstemmed Revocable identity-based proxy re-signature against signing key exposure.
title_sort revocable identity-based proxy re-signature against signing key exposure.
publisher Public Library of Science (PLoS)
series PLoS ONE
issn 1932-6203
publishDate 2018-01-01
description Identity-based proxy re-signature (IDPRS) is a novel cryptographic primitive that allows a semi-trusted proxy to convert a signature under one identity into another signature under another identity on the same message by using a re-signature key. Due to this transformation function, IDPRS is very useful in constructing privacy-preserving schemes for various information systems. Key revocation functionality is important in practical IDPRS for managing users dynamically; however, the existing IDPRS schemes do not provide revocation mechanisms that allow the removal of misbehaving or compromised users from the system. In this paper, we first introduce a notion called revocable identity-based proxy re-signature (RIDPRS) to achieve the revocation functionality. We provide a formal definition of RIDPRS as well as its security model. Then, we present a concrete RIDPRS scheme that can resist signing key exposure and prove that the proposed scheme is existentially unforgeable against adaptive chosen identity and message attacks in the standard model. To further improve the performance of signature verification in RIDPRS, we introduce a notion called server-aided revocable identity-based proxy re-signature (SA-RIDPRS). Moreover, we extend the proposed RIDPRS scheme to the SA-RIDPRS scheme and prove that this extended scheme is secure against adaptive chosen message and collusion attacks. The analysis results show that our two schemes remain efficient in terms of computational complexity when implementing user revocation procedures. In particular, in the SA-RIDPRS scheme, the verifier needs to perform only a bilinear pairing and four exponentiation operations to verify the validity of the signature. Compared with other IDPRS schemes in the standard model, our SA-RIDPRS scheme greatly reduces the computation overhead of verification.
url http://europepmc.org/articles/PMC5868864?pdf=render
work_keys_str_mv AT xiaodongyang revocableidentitybasedproxyresignatureagainstsigningkeyexposure
AT chunlinchen revocableidentitybasedproxyresignatureagainstsigningkeyexposure
AT tingchunma revocableidentitybasedproxyresignatureagainstsigningkeyexposure
AT jinliwang revocableidentitybasedproxyresignatureagainstsigningkeyexposure
AT caifenwang revocableidentitybasedproxyresignatureagainstsigningkeyexposure
_version_ 1716808746320003072