利用Gentry的基于身份的加密方案及其变体,设计了具有部分消息恢复功能的基于身份签名方案,缩短了消息及其签名的总长度,同时,截断的消息能在合理时间内被恢复出来.在标准模型下,证明了该方案在自适应选择消息攻击下存在性不可伪造规约为q-Strong Diffie—Hellman困难假设.与现有的标准模型下基于身份的签名方案相比,该方案缩短了消息及其签名的总长度,适用于带宽受限的环境.
Based on Gentry' s identity based encryption scheme and its variants, an identity-based signature scheme with partial message recovery is proposed. In this scheme, the total length of the original message and the appended signature is shortened, and the discarded message is recovered in reasonable time. The proposed scheme is proven to be existentially unforgeable under adaptive chosen message attacks in the standard model and its security depends on q-strong Diffie-Hellman intractability assumption. Compared with the existing identitybased signatures in the standard model, this scheme has a shorter length of message and signature, and is applied to low-bandwidth communication environments.