- While considering multiple groups it discourages users from sharing their private membership keys through two orthogonal and complementary approaches. In fact, it merges functionality similar to credential systems with anonymous type of signing with revocation.
- The group manager now mainly manages joining procedures, and new entities (called fairness authorities and consisting of various representatives, possibly) are involved in opening and revealing procedures. In many systems scenario assuring fairness in anonymity revocation is required.
We specify the notion and implement it in the random oracle model.
Category / Keywords: cryptographic protocols / digital signatures, group signatures, traceable signatures Publication Info: Financial Cryptography 2008 (extended version of) Date: received 29 Jan 2008, last revised 29 Jan 2008 Contact author: sgchoi at cs columbia edu Available formats: Postscript (PS) | Compressed Postscript (PS.GZ) | PDF | BibTeX Citation Version: 20080130:161134 (All versions of this report) Discussion forum: Show discussion | Start new discussion