Probabilistic signature scheme
US6266771A · kind A · utility
Assignee
Inventors
Key dates
| Filing date | Feb 9, 1998 |
| Grant date | Jul 24, 2001 |
| Priority date | — |
| Expiry date | Feb 9, 2018 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L2209/04
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
An RSA-based signing scheme that combines essentially optimal efficiency with attractive security properties. One preferred signing routine requires one RSA decryption plus some hashing, verifications requires one RSA encryption plus some hashing, and the size of the signature preferably is the size of the modulus. Given an ideal underlying hash function, the scheme is not only provably secure, but has security tightly related to the security of RSA. An alternative embodiment maintains all of the above features and, in addition, provides message recovery. The techniques can be extended to provide schemes for Rabin-based signatures or signatures using other trapdoor functions.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.