Presentation 1997/7/19
The Exact Security of Multi-Signature Schemes
Kazuo Ohta, Tatsuaki Okamoto,
Abstract(in English) Although several multi-signature schemes have been proposed, no scheme has been proven to be secure against adaptive chosen-message insider attacks. This paper proposes the first provably secure multi-signature schemes under the random oracle model. The security of our schemes can be reduced to the intractability of calculating a secret key from the public key in the sense of exact security by Bellare and Rogaway. The proposed schemes are efficient if the random oracle is replaced by practical hash functions. Even a special case of our results for a single-signature scheme (e.g. Schnorr scheme) gives a tighter security analysis than the previous results for the Schnorr scheme by Pointcheval and Stern. The essential technique in our proof of security is the exact reduction from signature schemes to the corresponding identification schemes.
Keyword(in English) digital signature / Fiat-Shamir scheme / Schnorr scheme / random oracle model / zero-knowledge interactive proof / provable security
