Lower bounds on structure-preserving signatures for bilateral messages

M Abe, M Ambrona, M Ohkubo, M Tibouchi - Security and Cryptography …, 2018 - Springer
M Abe, M Ambrona, M Ohkubo, M Tibouchi
Security and Cryptography for Networks: 11th International Conference, SCN …, 2018Springer
Lower bounds for structure-preserving signature (SPS) schemes based on non-interactive
assumptions have only been established in the case of unilateral messages, ie schemes
signing tuples of group elements all from the same source group. In this paper, we consider
the case of bilateral messages, consisting of elements from both source groups. We show
that, for Type-III bilinear groups, SPS's must consist of at least 6 group elements: many more
than the 4 elements needed in the unilateral case, and optimal, as it matches a known upper …
Abstract
Lower bounds for structure-preserving signature (SPS) schemes based on non-interactive assumptions have only been established in the case of unilateral messages, i.e. schemes signing tuples of group elements all from the same source group. In this paper, we consider the case of bilateral messages, consisting of elements from both source groups. We show that, for Type-III bilinear groups, SPS’s must consist of at least 6 group elements: many more than the 4 elements needed in the unilateral case, and optimal, as it matches a known upper bound from the literature. We also obtain the first non-trivial lower bounds for SPS’s in Type-II groups: a minimum of 4 group elements, whereas constructions with 3 group elements are known from interactive assumptions.
Springer
Showing the best result for this search. See all results