计算机工程与应用 ›› 2011, Vol. 47 ›› Issue (16): 69-70.

• 网络、通信、安全 • 上一篇    下一篇

两种无证书签名方案的密码学分析及改进

杜红珍   

  1. 宝鸡文理学院 数学系,陕西 宝鸡 721013
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2011-06-01 发布日期:2011-06-01

Cryptanalysis and improvement of two certificateless signature schemes

DU Hongzhen   

  1. Department of Mathematics,Baoji University of Arts and Sciences,Baoji,Shaanxi 721013,China
  • Received:1900-01-01 Revised:1900-01-01 Online:2011-06-01 Published:2011-06-01

摘要: 对苏万力等提出的无证书签名方案和张玉磊等提出的无证书签名方案进行了安全性分析,指出这两个方案在公钥替换攻击下是不安全的,分别给出了这两个方案的一种伪造攻击。提出了这两个方案的改进方案,改进方案克服了原方案的缺陷,提高了系统的安全性,并保留了原方案的优点。

关键词: 无证书签名, 公钥替换攻击, 双线性对

Abstract: Security analyses of two certificateless signature schemes presented respectively by Su Wanli et al.and Zhang Yulei et al.are given.It is found that the two schemes are insecure against public-key replacement attacks and a forgery attack on the two schemes is given respectively.Two improved schemes for the two schemes are proposed.The improved schemes overcome the security flaws of original schemes,improve the security of the system,and retain some merits of the original schemes.

Key words: certificateless signature, public-key replacement attack, bilinear pairing