Paper 2021/148

On methods of shortening ElGamal-type signatures

Liliya Akhmetzyanova, Evgeny Alekseev, Alexandra Babueva, and Stanislav Smyshlyaev

Abstract

Development of signature schemes providing short signatures is a quite relevant non-trivial challenge for cryptographers. Since the late 1980’s many short signature schemes have been proposed. The most perspective schemes are multivariate schemes and schemes based on Weil pairing. Unfortunately, the cryptographic tools used in these schemes are still not supported by most cryptographic software that complicates their effortless use in practice. In the current paper we investigate the opportunity of shortening the standard ElGamal-type signatures. We propose three methods of shortening signatures (for any ElGamal-type schemes such as ECDSA, GOST and SM2) and analyze how applying these methods affects the security. Applying all three methods to the GOST signature scheme with elliptic curve subgroup order $q$, $2^{255} < q < 2^{256}$, can reduce the signature size from $512$ to $320$ bits. The modified scheme provides sufficient security and acceptable (for non-interactive protocols) signing and verifying time.

Metadata
Available format(s)
PDF
Category
Public-key cryptography
Publication info
Preprint. MAJOR revision.
Keywords
short signature schemeElGamal-type signature schemeGOSTprovable security
Contact author(s)
babueva @ cryptopro ru
History
2021-02-12: received
Short URL
https://ia.cr/2021/148
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2021/148,
      author = {Liliya Akhmetzyanova and Evgeny Alekseev and Alexandra Babueva and Stanislav Smyshlyaev},
      title = {On methods of shortening ElGamal-type signatures},
      howpublished = {Cryptology ePrint Archive, Paper 2021/148},
      year = {2021},
      note = {\url{https://eprint.iacr.org/2021/148}},
      url = {https://eprint.iacr.org/2021/148}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.