本文提出了一类新的认证加密方案,这类方案首次将消息可恢复签名和对称加密有机结合.它有两个特点,一个是签名中的承诺值只有预定的接收者才能算出,从而又可将该承诺值用作对称加密的密钥,取得一举两得之功效;另一个是用签名中恢复出的消息与对称解密得到的消息相比较,实现消息有效性的验证,改变了传统上使用Hash函数或Redundancy函数的验证方法.因此本文提出的新方案是一类不使用Hash函数和Redundancy函数的认证加密方案,
A new type of authenticated encryption schemes is proposed. It first combines signature with message recovery schemes and symmetric encryption schemes together. This type of schemes has the following two characteristics : the commitment value of the signature is only recoverable by an intended receiver, so the value also can be used as a shared symmetric key of symmetric encryption and acts as "two birds one stone". The validity of the received message is verified by comparing the recovered message from the signature with the decrypted message instead of using Hash or Redundancy functions in traditional method. Therefore, the proposed scheme is an authenticated encryption without using Hash functions or Redundancy functions.