Lecture Notes in Computer Science, 1992, Volume 576/1992, 457-469, DOI: 10.1007/3-540-46766-1_37

Shared generation of authenticators and signatures
Extended Abstract

Yvo Desmedt and Yair Frankel

View Related Documents

Abstract

Often it is desired that the power to sign or authenticate messages is shared. This paper presents methods to collectively generate RSA signatures, provably secure authenticators and unconditionally secure authenticators. In the new schemes, l individuals are given shares such that kl are needed to generate a signature (authenticator) but less than k can not. When the k people have finished signing (authenticating), nobody can perform an impersonation or substitution attack. These schemes are called threshold signature (authentication) schemes. Clearly these schemes are better than each of the k individuals sending a separate authenticator for each message or if each of the k individuals each send their share to a “trusted” person who will sign for them.
In all of the schemes we assume that the shareholders (senders) and receiver have secure workstations but the network and servers are not necessarily secure.
Research is being supported by NSF Grant NCR-9106327.

Fulltext Preview

Image of the first page of the fulltext document