Title
Deterring Certificate Subversion: Efficient Double-Authentication-Preventing Signatures.
Abstract
We present highly efficient double authentication preventing signatures DAPS. In a DAPS, signing two messages with the same first part and differing second parts reveals the signing key. In the context of PKIs we suggest that CAs who use DAPS to create certificates have a court-convincing argument to deny big-brother requests to create rogue certificates, thus deterring certificate subversion. We give two general methods for obtaining DAPS. Both start from trapdoor identification schemes. We instantiate our transforms to obtain numerous specific DAPS that, in addition to being efficient, are proven with tight security reductions to standard assumptions. We implement our DAPS schemes to show that they are not only several orders of magnitude more efficient than prior DAPS but competitive with in-use signature schemes that lack the double authentication preventing property.
Year
DOI
Venue
2017
10.1007/978-3-662-54388-7_5
PKC
DocType
Volume
ISSN
Conference
10175
0302-9743
Citations 
PageRank 
References 
4
0.43
11
Authors
3
Name
Order
Citations
PageRank
Mihir Bellare1164371481.16
Bertram Poettering222318.74
Douglas Stebila357848.66