Paper 2002/017

The Cramer-Shoup Strong-RSA Signature Scheme Revisited

Marc Fischlin

Abstract

We discuss a modification of the Cramer-Shoup strong-RSA signature scheme. Our proposal also presumes the strong RSA assumption (and a collision-intractable hash function for long messages), but -without loss in performance- the size of a signature is almost halved compared to the original scheme. We also show how to turn the signature scheme into a "lightweight" anonymous (but linkable) group identification protocol without random oracles.

Metadata
Available format(s)
PDF PS
Category
Cryptographic protocols
Publication info
Published elsewhere. Unknown where it was published
Keywords
anonymitydigital signaturesidentification protocolsRSA
Contact author(s)
marc @ mi informatik uni-frankfurt de
History
2002-02-14: received
Short URL
https://ia.cr/2002/017
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2002/017,
      author = {Marc Fischlin},
      title = {The Cramer-Shoup Strong-{RSA} Signature Scheme Revisited},
      howpublished = {Cryptology {ePrint} Archive, Paper 2002/017},
      year = {2002},
      url = {https://eprint.iacr.org/2002/017}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.