Paper 2012/029
On the Exact Security of Schnorr-Type Signatures in the Random Oracle Model
Yannick Seurin
Abstract
The Schnorr signature scheme has been known to be provably secure in the Random Oracle Model under the Discrete Logarithm (DL) assumption since the work of Pointcheval and Stern (EUROCRYPT '96), at the price of a very loose reduction though: if there is a forger making at most
Metadata
- Available format(s)
-
PDF
- Category
- Public-key cryptography
- Publication info
- Published elsewhere. Abridged version at EUROCRYPT 2012
- Keywords
- Schnorr signaturesdiscrete logarithmForking LemmaRandom Oracle Modelmeta-reductionone-way group homomorphism
- Contact author(s)
- yannick seurin @ m4x org
- History
- 2012-01-22: received
- Short URL
- https://ia.cr/2012/029
- License
-
CC BY
BibTeX
@misc{cryptoeprint:2012/029, author = {Yannick Seurin}, title = {On the Exact Security of Schnorr-Type Signatures in the Random Oracle Model}, howpublished = {Cryptology {ePrint} Archive, Paper 2012/029}, year = {2012}, url = {https://eprint.iacr.org/2012/029} }