失败-停止签名是一类不依赖于攻击者计算能力假设的数字签名技术,即使攻击者拥有无限的计算能力,签名者也可以证明一个签名是伪造的。目前,基于RSA密码体制的失败-停止签名已经比较成熟,我们在此基础上提出了一种新的门限失败-停止签名方案,并对此方案进行了安全性分析。该方案基于可证明安全的RSA失败-停止签名,具有欺骗检测(验证部分签名)和能够显示而高效地证明伪造性等特点。
The security of fail-stop signature schemes does not rely on assumption of computational power of forger. Fail-stop signature schemes provide security even if a forger possesses unlimited computation power by enabling the sender to provide a proof on forgery if it oc- curs. Currently the study of fail-stop signature based on RSA has been mature. We construct a new threshold fail-stop signature scheme based on it and provide security analysis of the scheme. Our scheme is based on a provably secure RSA fail-stop signature scheme with the advantage of cheater detection ( verification of partial signatures) and efficient proof of forgery.