A secure group signature is required to be anonymous, that is, given two group signatures generated by two different members on the same message or two group signatures generated by the same member on two different messages, they are indistinguishable except for the group manager. In this paper we prove the equivalence of a group signature's anonymity and its indistinguishability against chosen ciphertext attacks if we view a group signature as an encryption of member identity. Particularly, we prove ACJT's group signature is IND-CCA.2 secure, so ACJT's scheme is anonymous in the strong sense. The result is an answer to an open question in literature. © Springer-Verlag Berlin Heidelberg 2005.
CITATION STYLE
Zhou, S., & Lin, D. (2005). On anonymity of group signatures. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 3802 LNAI, pp. 131–136). Springer Verlag. https://doi.org/10.1007/11596981_19
Mendeley helps you to discover research relevant for your work.