Suppr超能文献

基于 SM2 的多方协同签名方案。

Multi-party co-signature scheme based on SM2.

机构信息

College of Computer Science, Sichuan Normal University, Chengdu, Sichuan, China.

School of Mathematics and Statistics, Huizhou University, Guangdong Province, China.

出版信息

PLoS One. 2023 Feb 6;18(2):e0268245. doi: 10.1371/journal.pone.0268245. eCollection 2023.

Abstract

Two-party collaborative signature scheme is an important cryptographic technology for user authentication and data integrity protection when using mobile devices for financial and securities transactions. However, the two-party collaboration scheme has the following shortcomings: firstly, it is not flexible enough, and it requires the collaborating parties to be secure and trusted; secondly, the two-party collaboration security still needs to be improved. Once a hacker obtains the signature private key and collaborative identity of a mobile device, it can construct a legitimate two-party collaborative signature. Third, the application scenario of two-party co-signature is limited and cannot meet the application scenario of multi-device co-signature. For this reason, this paper designs a multi-party collaborative signature scheme based on SM2 digital signature algorithm in the standard "SM2 Elliptic Curve Public Key Cryptography" of GM/T003-2012. This scheme consists of multiple (more than 2) participants to jointly generate the signature group public key and valid signature in an interactive manner, while ensuring that each user cannot know the signature key other than their own during the signing process. We implement this scheme based on the GMP library. The experimental results show that this scheme is not only flexible but also more secure and trustworthy to meet the application scenario of multi-device collaborative signing. In addition, the time for multiple participants to construct signatures in this scheme is similar, and the time for signature verification is less different from that of the original SM2 signature.

摘要

两方协作签名方案是使用移动设备进行金融和证券交易时进行用户认证和数据完整性保护的重要密码技术。然而,两方协作方案存在以下缺点:首先,它不够灵活,需要协作方安全可信;其次,两方协作安全性仍需改进。一旦黑客获取了移动设备的签名私钥和协作身份,就可以构造合法的两方协作签名。第三,两方协同签名的应用场景有限,无法满足多设备协同签名的应用场景。为此,本文设计了一种基于 GM/T003-2012 标准“SM2 椭圆曲线公钥密码”中的 SM2 数字签名算法的多方协作签名方案。该方案由多个(多于 2 个)参与者以交互方式共同生成签名组公钥和有效签名,同时确保在签名过程中每个用户都无法知道除自己之外的签名密钥。我们基于 GMP 库实现了该方案。实验结果表明,该方案不仅灵活,而且更安全、更可信,能够满足多设备协同签名的应用场景。此外,该方案中多个参与者构造签名的时间相似,签名验证的时间与原始 SM2 签名的时间差异较小。

https://cdn.ncbi.nlm.nih.gov/pmc/blobs/a9bf/9901816/fd1c683c784e/pone.0268245.g001.jpg

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验