Paper 2008/380

Dynamic Threshold Cryptosystem without Group Manager

Andreas Noack and Stefan Spitz

Abstract

In dynamic networks with flexible memberships, group signatures and distributed signatures are an important problem. Dynamic threshold cryptosystems are best suited to realize distributed signatures in dynamic (e.g. meshed) networks. Without a group manager or a trusted third party even more flexible scenarios can be realized. Gennaro et al. showed, it is possible to dynamically increase the size of the signer group, without altering the public key. We extend this idea by removing members from the group, also without changing the public key. This is an important feature for dynamic groups, since it is very common, e.g. in meshed networks that members leave a group. Gennaro et al. used RSA and bi-variate polynomials for their scheme. In contrast, we developed a DL-based scheme that uses ideas from the field of proactive secret sharing (PSS). One advantage of our scheme is the possibility to use elliptic curve cryptography and thereby decrease the communication and computation complexity through a smaller security parameter. Our proposal is an efficient threshold cryptosystem that is able to adapt the group size in both directions. Since it is not possible to realize a non-interactive scheme with the ability to remove members (while the public key stays unchanged), we realized an interactive scheme whose communication efficency is highly optimized to compete with non-interactive schemes. Our contribution also includes a security proof for our threshold scheme.

Metadata
Available format(s)
PDF
Category
Public-key cryptography
Publication info
Published elsewhere. Unknown where it was published
Keywords
Public-key cryptosystemthreshold cryptosystemdynamic addingdynamic removingdynamic membershipsecret sharingproactive
Contact author(s)
andreas noack @ rub de
History
2008-09-07: received
Short URL
https://ia.cr/2008/380
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2008/380,
      author = {Andreas Noack and Stefan Spitz},
      title = {Dynamic Threshold Cryptosystem without Group Manager},
      howpublished = {Cryptology {ePrint} Archive, Paper 2008/380},
      year = {2008},
      url = {https://eprint.iacr.org/2008/380}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.