格上的简短可链接环签名
可链接环签名可防止区块链中的双花攻击,基于格的签名可抵抗量子攻击,但已有格基可链接环签名的大小随环成员的增多而增大。针对该问题,提出了一种格上的简短可链接环签名方案。该方案用队列实现了向量数制的特殊转换,利用格上的累加器对环成员的公钥进行累加,使得签名大小不会随环成员的增多而增大;利用拒绝采样定理,构造出格上的知识证明签名,在防止签名私钥泄露的同时,提高了计算效率。在随机预言机模型下,证明了方案具有不可伪造性、匿名性、可链接性。性能分析与实验评估表明,本方案节省了时间开销和存储开销,且随着环成员的增多签名大小固定不变。
Linkable ring signatures could avoid double-spending attacks in the blockchain. Lattice-based signatures were quantum-resistant. However, as the number of ring members increased, the size of existing lattice-based linkable ring signatures increased. To solve this problem, a lattice-based linkable ring signatures scheme was proposed. This scheme used queues to implement a special conversion of vector number system, and used lattice-based accumulators to accumulate the public keys of ring members, so that the signature size didnt increase with the number of ring members. And using the rejection sampling theorem, this scheme constructed signatures based on proofs of knowledge on lattices, prevented the signature private key from leaking, and improved the computational efficiency. In the random oracle model, the scheme was proved to be unforgeable, anonymous and linkable. Performance analysis and experimental evaluation show that, this scheme saves time and storage, and the signature size is constant with the increase of ring members.
常琳林、张平、段莹、王杰昌、李杰
计算技术、计算机技术
格知识证明签名累加器简短可链接环签名
常琳林,张平,段莹,王杰昌,李杰.格上的简短可链接环签名[EB/OL].(2022-05-10)[2025-08-18].https://chinaxiv.org/abs/202205.00088.点此复制
评论