스트림 인증에 적합한 개선된 HORS기법

An Improved HORS for Stream Authentication

  • 박용수 (서울대학교 전기컴퓨터공학부) ;
  • 조유근 (서울대학교 전기컴퓨터공학부)
  • 발행 : 2003.08.01

초록

논문에서는 스트림 데이타를 인증하는데 적합한 개선된 HORS 일회용 서명 기법을 제시한다. 스트림 인증에 일회용 서명 기법을 사용할 경우, 가장 큰 문제점은 큰 서명 크기로 인해 네트워크 오버헤드가 많다는 점이다. 제시한 기법은 기존 일회용 서명 기법 중 서명 크기가 가장 작다. 또한, 제시된 기법의 검증 연산량은 매우 작다. 스트림 인증에 적합한 기존 기법과 온라인 서명 연산량을 비교하면, HORS보다는 다소 많지만, BiBa나 Powerball보다 매우 작다. 제시된 기법에서 서명 연산은 쉽게 병렬 처리가 가능하며, 특히 비밀키를 가지지 않는 서버의 도움을 받을 수 있기 때문에, 서명 서버의 부하를 손쉽게 그리고 안전하게 줄일 수 있다.

We propose an efficient one-time signature scheme for stream authentication by improving HORS. When one-time signatures are used for authenticating live streams, one of the most serious drawbacks is that its large signature size yields high communication overhead. Compared with the previous one-time signature schemes, proposed scheme has the smallest signature size. Moreover, verification overhead is very low. Compared with the previous schemes for stream authentication, signing overhead of our scheme is larger than that of HORS but much lower than those of BiBa or Powerball. Moreover, signing operation can be trivially parallelized without any additional risk because it does not require sharing of the secret key between distributed servers.

키워드

참고문헌

  1. Adrian Perrig, Ran Canetti, Dawn Song, and J. D. Tygar, Efficient Authentication and Signing of Multicast Streams over Lossy Channels, In Proceedings of IEEE Security and Privacy Symposium, May, 2000
  2. A. Perrig, The BiBa One Time Signature and Broadcast Authentication Protocol, ACM CCS'01, 2001 https://doi.org/10.1145/501983.501988
  3. Pankaj Rohatgi, A Compact and Fast Hybrid Signature Scheme for Multicast Packet Authentication, In 6th ACM Conference on Computer and Communication Security, pp. 93-100, November, 1999 https://doi.org/10.1145/319709.319722
  4. Alfred J. Menezes,Paul C. van Oorschot, and Scott A. Vanstone, Handbook of Applied Cryptography, CRC Press, 1997
  5. L. Reyzin, N. Reyzin, Better than BiBa: Short One-time Signatures with Fast Signing and Verifying, ACISP'02, 2002
  6. M. Mitzenmacher, A. Perrig, Bounds and Improvements for BiBa Signature Schemes, Technical Report, 2002
  7. Philippe Golle and Nagendra Modadugu, Authenticating Streamed Data in the Presence of Random Packet Loss, In NDSS'01, pages 13-22, 2001
  8. Chung Kei Wong and Simon S. Lam, Digital Signatures for Flows and Multicasts, IEEE/ACM Transactions on Networking, 7(4):502-513, 1999 https://doi.org/10.1109/90.793005
  9. Rosario Gennaro and Pankaj Rohatgi, How to Sign Digital Streams, In CRYPTO'97, pages 180-197, 1997
  10. Ralph C. Merkle, A Certified Digital Signature, In CRYPTO'89, pages 218-238, 1989
  11. Mihir Bellare and Phillip Rogaway, Random Oracles are Practical: a Paradigm for Designing Efficient Protocols, In 1st Conf. on CCS, ACM, pages 62-73, 1993
  12. Ralph C. Merkle, A digital signature based on a conventional encryption function, In CRYPTO'87, pages 369-378, 1987
  13. D. Bleichenbacher and U. Maurer, Directed acyclic graphs, one way functions and digital signatures, In CRYPTO'94, 1994