为了解决密钥泄露问题,提出一个具有前向安全性的无证书代理签名方案。本方案采用密钥不断更新的方法,保证了代理签名方案的前向安全性,即当代理签名者的代理密钥泄露后,攻击者不能伪造当前时段以前的代理签名,从而减小了密钥泄露所带来的损失。同时本方案采用了无证书公钥密码体制,避免了基于证书密码系统的证书管理问题,解决了基于身份的密钥托管问题。
In order to deal with the key exposure problem, this paper proposed a forward secure eertifieateless proxy signature scheme. This new scheme was forward secure by updating secret key frequently. When the proxy signature secret key was stolen, the attacker could not forge the former proxy signature. And then reduced the loss, which caused by the key exposure to a great extent. Based certificateless public cryptosystem, it also overcame the problem of the certificate management in the certificate-based public key eryptosystem and the inherent key escrow problem in the identity-based public key eryptosystem.