聚合签名通过将n个签名者对n个消息的签名聚合为一个签名,来提高签名与验证的效率.文中给出了基于证书聚合签名方案的形式化定义和安全模型,并构造了一个具体的方案.在计算Diffie-Hellman问题和离散对数问题困难假设下,该方案被证明是安全的.在形式上,方案使用证书作为用户临时签名密钥的一部分,简化了证书的管理和发布,克服了密钥托管问题,而且在签名产生阶段无需任何双线性对运算,在签名验算阶段也只需一个双线性对运算,不受签名人数的影响.与已有的聚合签名方案相比较,所提方案具有签名长度更短和计算代价更少等优点.
To give the formal definition and security model of certificate-based aggregate signature scheme.The authors also To construct a concrete scheme which is provably secure assuming the computational Diffie-Hellman problem and the discrete logarithm problem are hard.In the form,the certificate in our scheme is implicitly used as part of user's temporary signing key,so the key escrow problem can be solved and the key management and dissemination can be simplified in our scheme.The proposed certificate-based aggregate signature scheme does not require any bilinear pairing operations in aggregation stage,while requires only one bilinear pairing operation in verify stage which is independent of the number of the signers.Compared with the other existing secure aggregate signature schemes,our scheme enjoys shorter signature length and less running time.