计算机工程与应用 ›› 2016, Vol. 52 ›› Issue (14): 110-114.

• 网络、通信与安全 • 上一篇    下一篇

一个前向安全代理签名方案的安全分析及改进

李亚荣1,李  虓1,何明星2,刘晓剑2,葛丽霞1   

  1. 1.西华大学 理学院,成都 610039
    2.西华大学 计算机与软件工程学院,成都 610039
  • 出版日期:2016-07-15 发布日期:2016-07-18

Security analysis and improvement of forward secure proxy signature scheme

LI Yarong1, LI Xiao1, HE Mingxing2, LIU Xiaojian2, GE Lixia1   

  1. 1.School of Science,Xihua University, Chengdu 610039, China
    2.School of Computer and Software Engineering, Xihua University, Chengdu 610039, China
  • Online:2016-07-15 Published:2016-07-18

摘要: 已有的前向安全代理签名方案或多或少存在一些安全缺陷。针对陈宁宇等人的前向安全的代理签名方案进行安全性分析,发现该方案不满足前向安全性,无法抵抗PKG和代理签名人的合谋攻击,公钥替换攻击以及不诚实的PKG的伪造攻击。提出一个改进的前向安全代理签名方案,改进的方案满足前向安全的代理签名的所有安全性要求,同时能很好地抵抗合谋攻击、不诚实的PKG的伪造攻击和公钥替换攻击。

关键词: 代理签名, 前向安全, 无证书签名, 合谋攻击, 公钥替换

Abstract: The existed forward secure proxy signature schemes have some security faults more or less. This paper analyzes the security of a forward secure proxy signature scheme proposed by Chen Ningyu et al. The analysis result shows that the scheme cannot satisfy the forward security, cannot resist the collusion attack of PKG and the proxy signer, the attack of public key substituted and the forgery attack of the distrusted PKG. To get over the faults of Chen Ningyu’s scheme, an improved forward secure proxy signature scheme is proposed in this paper. The improved scheme satisfies all the security requirements of forward secure proxy signature scheme, moreover, it can resist the collusion attack, the distrusted PKG’s forgery attack and the public key substituted attack.

Key words: proxy signature, forward secure, certificateless signature, collusion attack, public key substituted