Short signatures in the random oracle model

Louis Granboulan
In Yuliang Zheng, editor, Asiacrypt'02, Queenstown, New-Zealand, 1-5 December 2002. LNCS 2501, Springer-Verlag, 2002.
© IACR

Abstract: We study how digital signature schemes can generate signatures as short as possible, in particular in the case where partial message recovery is allowed. We give a concrete proposition named OPSSR that achieves the lower bound for message expansion, and give an exact security proof of the scheme in the ideal cipher model. We extend it to the multi-key setting. We also show that this padding can be used for an asymmetric encryption scheme with minimal message expansion.

Download the paper. [pdf] [ps.gz]
The slides presented at Asiacrypt'02.
NESSIE report numbered NES/DOC/ENS/WP5/021/2, Aug. 2002.