计算机应用 ›› 2015, Vol. 35 ›› Issue (2): 401-406.DOI: 10.11772/j.issn.1001-9081.2015.02.0401

• 信息安全 • 上一篇    下一篇

基于多变量密码体制的签密方案

蓝锦佳, 韩益亮, 杨晓元   

  1. 武警工程大学 电子技术系, 西安 710086
  • 收稿日期:2014-09-09 修回日期:2014-11-06 出版日期:2015-02-10 发布日期:2015-02-12
  • 通讯作者: 蓝锦佳
  • 作者简介:蓝锦佳(1990-),男,广东丰顺人,硕士研究生,主要研究方向:密码学; 韩益亮(1977-),男,甘肃会宁人,副教授,博士, CCF高级会员,主要研究方向:密码学、网络安全; 杨晓元(1959-),男,湖南湘潭人,教授,主要研究方向:密码学、信息隐藏。
  • 基金资助:

    国家自然科学基金资助项目(61103231,61103230,61272492);陕西省自然科学基础研究计划项目(2011JM8012)。

Signcryption scheme based on multivariate cryptosystem

LAN Jinjia, HAN Yiliang, YANG Xiaoyuan   

  1. Department of Electronic Technology, Engineering University of Armed Police Force, Xi'an Shaanxi 710086, China
  • Received:2014-09-09 Revised:2014-11-06 Online:2015-02-10 Published:2015-02-12

摘要:

为了解决基于传统公钥密码的签密方案不能抵抗量子攻击的问题,提出了一种基于多变量公钥密码的签密方案。结合多层Matsumoto-Imai(MMI)方案中心映射的多层构造、CyclicRainbow签名方案,以及隐藏域方程(HFE)的中心映射构造,提出了一种改进的中心映射构造方法,并由此设计了相应的签密方案。分析表明,所设计的方案与MMI方案相比,在实现了加密和签名的同时,方案密钥量和密文量分别减少了5%和50%。在随机预言模型下,基于多变量方程组求解困难问题假设和多项式同构困难问题假设,证明了该方案在适应性选择密文攻击下具有不可区分性,在适应性选择消息攻击下具有不可伪造性。

关键词: 抗量子攻击, 多变量, 中心映射, 签密, 可证明安全

Abstract:

Aiming at the problem that signcryption scheme of the conditional public key cryptosystems cannot resist the quantum attack, a new signcryption scheme based on multivariate public key cryptosystems was proposed. Combining the central map of multilayer structure in Multi-layer Matsumoto-Imai (MMI) with the CyclicRainbow signature scheme, and using the constructure of the central map in Hidden Field Equation (HFE), the signcryption scheme was designed by introducing an improved method of constructing central map. The analysis shows that, compared with the original MMI, the scheme's key size decreases by 5% and the ciphertext reduces by 50%, and it also makes encryption and signature both realizable at the same time. In the random oracle model, its indistinguishability under the hardness of Multivariate Quadratic (MQ) problem and its unforgeability under the Isomorphism of Polynomials (IP) assumption were proved respectively. And it shows that the proposed scheme has unforgeability under the adaptive chosen-ciphertext attack as well as indistinguishability under the adaptive chosen message attack.

Key words: resistance of quantum attack, multivariate, central map, signcryption, provable security

中图分类号: