Paper 2012/200

Aggregate Signcryption

Alexander W. Dent


Signcryption schemes provide an efficient messaging system for data that needs to be sent with data confidentiality, data integrity and data origin authentication. However, the bandwidth overhead for the use of signcryption in a network in which a large number of messages need to be sent may be high. Motivated by aggregate signature schemes, we propose the concept of an aggregate signcryption scheme. An aggregate signcryption scheme allows distinct signcryption ciphertexts intended for the same recipient to be merged into a single signcryption ciphertext of smaller size without losing any of their security guarantees. This has the potential to provide significant bandwidth savings. We propose security models for this scheme, analyse the trivial generic constructions, propose an efficient new scheme, and analyse the bandwidth requirements of these schemes for a practical distributed database application.

Available format(s)
Public-key cryptography
Publication info
Published elsewhere. No publication planned
signcryptionaggregatedistributed databases
Contact author(s)
adent @ qualcomm com
2012-04-13: received
Short URL
Creative Commons Attribution


      author = {Alexander W.  Dent},
      title = {Aggregate Signcryption},
      howpublished = {Cryptology ePrint Archive, Paper 2012/200},
      year = {2012},
      note = {\url{}},
      url = {}
Note: In order to protect the privacy of readers, does not use cookies or embedded third party content.