期刊名称:International Journal of Computer Science and Network Security
印刷版ISSN:1738-7906
出版年度:2008
卷号:8
期号:9
页码:13-20
出版社:International Journal of Computer Science and Network Security
摘要:Dodis et al proposed a key-insulated signature scheme in 2003. In the scheme, total lifetime of a certificate is divided to time periods and different secret keys are used for each time period. The master secret key is stored in the physically secure device and is not used for signing directly. The different secret keys are used for signature in each time period and they are refreshed by a computation with the master key. Therefore, the scheme can minimize the damage caused by a secret key��s exposure. However, it can not protect the user from the secret key��s exposure perfectly. We propose a method which can detect even a single illegitimate signature due to the exposure of a secret key in the key-insulated scheme. The method uses the one-time hash chain based on NOVOMODO and the counter. And it requires small modification of traditional PKI. The method can prevent the users from compromising a secret key effectively in the key-insulated signature scheme.