为了减少公钥密码体制中证书管理带来的开销和提高在线/离线门限签名方案的性能,利用分布式密钥生成协议和可验证秘密共享协议,提出了一种基于身份的在线/离线门限签名方案,并在离散对数假设下证明了新方案满足顽健性和不可伪造性。分析结果表明,新方案避免了传统公钥证书的管理问题和复杂的双线性对运算,大大降低了离线门限签名算法和签名验证算法的计算复杂度,在效率上优于已有的在线/离线门限签名方案。
Based on the distributed key generation (DKG) protocol and verifiable secret sharing (VSS) protocol, an iden- tity-based on-line/off-line threshold signature scheme was proposed in order to eliminate the cost of the certificate man- agement in the public key cryptosystem and improve the performance of on-line/off-line threshold signature schemes. This scheme was proven to be robust and unforgeable under the discrete logarithm assumption. Analysis results show that the proposed scheme eliminates the problem of certificate management and pairing operation, and it greatly reduces computation cost of off-line threshold signature generation algorithm and signature verification algorithm. The new scheme is more efficient than the available on-line/off-line threshold signature schemes.