

New Signature Schemes with Coupons and Tight Reduction

14 years 8 months ago
New Signature Schemes with Coupons and Tight Reduction
Amongst provably secure signature schemes, two distinct classes are of particular interest: the ones with tight reduction (e.g., RSA-PSS), and those which support the use of coupons (e.g., Schnorr signature). This paper introduces a new generic signature scheme based on any zero-knowledge identification protocol Z and signature scheme S verifying basic security properties. The so-obtained signature scheme features provable security with tight reduction under the same complexity assumptions as the ones under which the basic zero-knowledge identification protocol and signature scheme are secure. In addition to that, interestingly, the combined scheme supports coupons. We propose an application of our generic conversion scheme based on RSA. We note however that any computational problem P could be turned into such a tight signature scheme supporting coupons for any zero-knowledge identification protocol and signature scheme based on P. Interestingly, our design technique provides an al...
Benoît Chevallier-Mames
Added 26 Jun 2010
Updated 26 Jun 2010
Type Conference
Year 2005
Where ACNS
Authors Benoît Chevallier-Mames
Comments (0)