计算机应用 ›› 2013, Vol. 33 ›› Issue (07): 1846-1850.DOI: 10.11772/j.issn.1001-9081.201307.1846

• 信息安全 • 上一篇    下一篇



  1. 1. 安阳师范学院 计算机与信息工程学院,河南 安阳 455000
    2. 清华大学 计算机科学与技术系,北京 100084
  • 收稿日期:2013-01-28 修回日期:2013-03-15 出版日期:2013-07-01 发布日期:2013-07-06
  • 通讯作者: 孙华
  • 作者简介:孙华(1980-),男,河南安阳人,副教授,博士,主要研究方向:密码学、信息安全;孟坤(1980-),男,河南项城人,博士,主要研究方向:无线网络安全、计算机网络性能评价。
  • 基金资助:


Efficient provably secure certificateless signcryption scheme in standard model

SUN Hua1,MENG Kun2   

  1. 1. School of Computer and Information Engineering, Anyang Normal University, Anyang Henan 455000, China
    2. Department of Computer Science and Technology, Tsinghua University, Beijing 100084, China
  • Received:2013-01-28 Revised:2013-03-15 Online:2013-07-06 Published:2013-07-01
  • Contact: SUN Hua

摘要: 目前大多数无证书签密方案都是在随机预言模型下提出的,针对随机预言模型下的方案往往无法在实际应用中构造相应实例这一问题,采用标准模型的方法来进行构造。在对几个已有标准模型下相应方案分析的基础上,指出它们都是不安全的。以Au等所提出的方案(AU M H, LIU J K, YUEN T H, 〖WTBX〗et al〖WTBZ〗. Practical hierarchical identity based encryption and signature schemes without random oracles. http://eprint.iacr.org/2006/368.pdf)为基础,利用椭圆曲线上的双线性对性质,提出了一个新的标准模型下可证安全的无证书签密方案。最后,利用决策双线性Diffie-Hellman(DBDH)等困难问题,证明该方案满足适应性选择密文攻击下的不可区分性以及适应性选择消息和身份攻击下的存在不可伪造性,因而方案是安全可靠的。

关键词: 标准模型, 签密, 可证明安全, 无证书公钥密码体制

Abstract: At present, most of the existing certificateless signcryption schemes proven secure are proposed in the random oracle. Concerning the problem that this kind of schemes usually can not construct the corresponding instance in the practical application, a certificateless signcryption scheme was designed in the standard model. By analyzing several certificateless signcryption schemes in the standard model, it was pointed out that they were all insecure. Based on Aus scheme (AU M H, LIU J K, YUEN T H, et al. Practical hierarchical identity based encryption and signature schemes without random oracles. http://eprint.iacr.org/2006/368.pdf), a new proven secure certificateless signcryption scheme was proposed in the standard model by using bilinear pairing technique of elliptic curves. In the end, it is proved that the scheme satisfies indistinguishability against adaptive chosen ciphertext attack and existential unforgeability against adaptive chosen message and identity attack under the complexity assumptions, such as Decisional Bilinear Diffie-Hellman (DBDH) problem. Therefore, the scheme was secure and reliable.

Key words: standard model, signcryption, provable security, certificateless Public Key Cryptography (PKC)
