Paper 1999/011

Practical Threshold Signatures

Victor Shoup

Abstract

We present an RSA threshold signature scheme. The scheme enjoys the following properties: it is unforgeable and robust; in the random oracle model, assuming the RSA problem is hard; signature share generation and verification is completely non-interactive; the size of an individual signature share is bounded by a constant times the size of the RSA modulus.

Metadata
Available format(s)
PS
Publication info
Published elsewhere. Appeared in the THEORY OF CRYPTOGRAPHY LIBRARY and has been included in the ePrint Archive.
Keywords
digital signaturethreshold cryptographyRSA
Contact author(s)
sho @ zurich ibm com
History
1999-10-11: revised
1999-04-19: received
Short URL
https://ia.cr/1999/011
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:1999/011,
      author = {Victor Shoup},
      title = {Practical Threshold Signatures},
      howpublished = {Cryptology ePrint Archive, Paper 1999/011},
      year = {1999},
      note = {\url{https://eprint.iacr.org/1999/011}},
      url = {https://eprint.iacr.org/1999/011}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.