Lattice-based digital signature method
The invention discloses a lattice-based digital signature method. The method comprises the steps: recording the private key of a signer as sk = (rho, K, tr, s, e, t0), the public key as pk = (rho, t1), and to-be-encrypted information as M belonging to {0, 1}*; for M belonging to {0, 1}*, enabling th...
Gespeichert in:
Hauptverfasser: | , |
---|---|
Format: | Patent |
Sprache: | chi ; eng |
Schlagworte: | |
Online-Zugang: | Volltext bestellen |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Zusammenfassung: | The invention discloses a lattice-based digital signature method. The method comprises the steps: recording the private key of a signer as sk = (rho, K, tr, s, e, t0), the public key as pk = (rho, t1), and to-be-encrypted information as M belonging to {0, 1}*; for M belonging to {0, 1}*, enabling the signer to calculate a legal signature sigma = (z, h, c) of M by using a private key sk of the signer; enabling a verifier to hold a public key pk = (rho, t1) of the signer, and for a given message signature pair (M, sigma), outputting a message signature pair which is legal when the verifier accepts (M, sigma) and only when the verifier accepts (M, sigma). According to the method, parameters are specifically selected through programming design, deep mathematical analysis and a large number of program tests, so that the optimal balance between efficiency and safety is achieved on the premise that the digital signature mechanism meets correctness.
一种基于格的数字签名方法。记签名者的私钥为sk=(ρ,K,tr,s,e,t0),公钥为pk=(ρ,t1),待加密信息为M∈{0,1}*; |
---|