为了解决现有签密方案仅能够实现一对一签密与解签密的局限性,兼顾其实用性和安全性,考虑到签密方案具有效率高而传输与计算成本低的特点,结合无证书公钥体制的优势,引入了能抵抗"恶意但被动"的KGC(密钥生成中心)攻击的无证书广播签密的形式化安全模型,并提出一种新的无证书广播签密方案.该方案建立在标准模型下,能抵抗"恶意但被动"的KGC攻击,并且依赖于DBDH假设可以证明是IDN-CCA2安全的,同时依赖于CDH假设是EUF-CMA安全的,具有较高的安全性和实用性.
Considering the characteristics of signcryption schemes with high efficiency and low computational and transmissional cost,along with the advantages of certificateless public key cryptography,a formal security model for certificateless broadcast signcryption secure against malicious-but-passive key generation center(KGC) attacks was introduced.Also,a new certificateless broadcast signcryption scheme was proposed to control the limitations of one-to-one transmission.This scheme was proven not only to be IDN-CCA2 secure under the decisional bilinear Diffie-Hellman(DBDH) intractability assumption without using the random oracles,but also to be existentially unforgeable under the computational Diffie-Hellman(CDH) intractability assumption.Furthermore,performance analysis shows that the proposed scheme is efficient and practical.