JP2002328602A

Blind signature method, device therefor, and program and recording medium therefor

Abstract

(57) A summary and subject It guarantees that a signature demand person cannot get the right signature more than the number published by the signer. Solution means Whenever there is a signature demand, the signature issue generates the characteristic data rnd, and z=H (rnd), Use z=z/z (z: signer public key) z, z, and z as a temporary public key, and a signature demand person by the random numbers v U=z, Calculate U=z and U=U/U, 撹乱 the document m using U and U, send e to a signer, and a signer signs e with the secret key x, and return r, c, s, and s, and it 撹乱 so that the signature demand person can verify r, c, s, and s, It asks for the certificates L and N proving the relation between the signature F, K, and T by a signer, T, and Z and U, and is referred to as the signature U, U, and F to m, K, T, T, L, and N.

Term

Term ended

Projected expiry passed 27 April 2021, 5.4 years ago.

  1. Priority and filed
  2. Published
  3. Projected expiry
  4. Today

12 claims: 8 independent, 4 dependent

  1. 1
    [Claims] [Claim 1] Each time a signature is issued, the signer's device includes information unique to the issuance, and generates and publishes a temporary public key associated with at least one of the signer's public keys. The signing requester device disturbs the above temporary public key and its original public key, Using this disturbed public key, the signature target is disturbed and sent to the signer's device. The signer's device signs the disturbed signature object received with the private key and sends it to the signer's device. The signature requester device issues a certificate showing the relationship between the original public key and the disturbed public key, and disturbs and makes the received signature verifiable, and the verifiable signature and the above certificate Is a blind signature method, which comprises signing the above-mentioned signature target. 【特許請求の範囲】 【請求項1】 署名者装置は署名発行ごとにその発行に固有な情報を含み、かつ署名者装置の公開鍵の少くとも一つと関連付けられた一時的公開鍵を生成して公開し、 署名要求者装置は上記一時的公開鍵及びそのもとの公開鍵を撹乱し、 この撹乱された公開鍵を用いて署名対象を撹乱して署名者装置へ送り、 署名者装置は受信した撹乱された署名対象に対し、秘密鍵で署名して署名要求者装置へ送り、 署名要求者装置はもとの公開鍵と撹乱された公開鍵との関係を示す証明書を発行し、かつ受信した署名を撹乱して検証可能にし、この検証可能とされた署名と上記証明書を上記署名対象に対する署名とすることを特徴とするブラインド署名方法。
  2. 2
    The signer device generates and publishes a temporary public key that includes information unique to the issuance for each signature issuance and is associated with at least one of the signer device's public keys, and is also a random number. To the signature requester device, The signing requester device disturbs the temporary public key and its original public key, generates data based on the disturbed public key and the random number received from the signing device, and transfers the data to the signing device. Send, The signer device signs the received data with the private key and sends it to the sign requester device. The signing requester device disrupts the received signature so that it can be verified, and associates the disturbed signature with the signature target. Using the associated information and the information used to disturb the public key, a certificate showing the relationship between the original public key and the disturbed public key is issued, and this certificate can be verified as described above. A blind signature method, characterized in that the signature is a signature for the above-mentioned signature target. 【請求項2】 署名者装置は署名発行ごとにその発行に固有な情報を含み、かつ署名者装置の公開鍵の少くとも一つと関連付けられた一時的公開鍵を生成して公開し、また乱数を署名要求者装置へ送り、 署名要求者装置は一時的公開鍵及びそのもとの公開鍵を撹乱し、その撹乱された公開鍵と、署名者装置から受信した乱数に基づいてデータを生成し、そのデータを署名者装置へ送り、 署名者装置は受信したデータに対し秘密鍵で署名して署名要求者装置へ送り、 署名要求者装置は受信した署名を検証可能なように撹乱し、その撹乱された署名と、署名対象を関連付け、 その関連付けられた情報と、上記公開鍵の撹乱に用いた情報とを用いて、もとの公開鍵と撹乱された公開鍵との関係を示す証明書を発行し、この証明書と上記検証可能とされた署名を上記署名対象に対する署名とすることを特徴とするブラインド署名方法。
  3. 3
    A means for sending a signature issuance request to a signer device, Disrupts the temporary public key and its original public key that contain information unique to the issue published by the signer's device for the signature issuance and that is associated with at least one of the signer's public keys. Means and A means of disturbing the signature target using this disturbed public key and sending it to the signer's device, A means of disturbing and verifiable the signature received from the signer device and issuing a certificate showing the relationship between the original public key and the disturbed public key. A means for outputting the verifiable signature and the certificate as a signature for the signature target together with the signature target, and A signature requester device for blind signatures. 【請求項3】 署名者装置に署名発行要求を送る手段と、 その署名発行に対し署名者装置から公開されたその発行に固有な情報を含み、かつ署名者装置の公開鍵の少くとも一つと関連付けられた一時的公開鍵及びそのもとの公開鍵を撹乱する手段と、 この撹乱された公開鍵を用いて署名対象を撹乱して署名者装置へ送る手段と、 署名者装置から受信した署名を撹乱して検証可能にすると共にもとの公開鍵と撹乱された公開鍵との関係を示す証明書を発行する手段と、 上記検証可能とされた署名及び上記証明書を上記署名対象に対する署名としてその署名対象と共に出力する手段と、 を具備するブラインド署名の署名要求者装置。
  4. 4
    A means for sending a signature issuance request to a signer device, Disrupts the temporary public key and its original public key that contain information unique to the issue published by the signer's device for the signature issuance and that is associated with at least one of the signer's public keys. Means and A means of generating data based on the disturbed public key and a random number received from the signer's device and sending the data to the signer's device. Means to disturb the signature received from the signer device so that it can be verified, A means of generating information that associates the disturbed signature with the signature target, A means of issuing a certificate showing the relationship between the original public key and the disturbed public key by using the associated information and the information used for disturbing the public key. The disturbed signature, the means for outputting the certificate as a signature for the signature target, and A signature requester device for blind signatures. 【請求項4】 署名者装置に署名発行要求を送る手段と、 その署名発行に対し署名者装置から公開されたその発行に固有な情報を含み、かつ署名者装置の公開鍵の少くとも一つと関連付けられた一時的公開鍵及びそのもとの公開鍵を撹乱する手段と、 その撹乱された公開鍵と、署名者装置から受信した乱数に基づいてデータを生成し、そのデータを署名者装置へ送る手段と、 署名者装置から受信した署名を検証可能なように撹乱する手段と、 その撹乱された署名と署名対象とを関連付けた情報を生成する手段と、 その関連付けられた情報と上記公開鍵の撹乱に用いた情報とを用いて、もとの公開鍵と撹乱された公開鍵との関係を示す証明書を発行する手段と、 上記撹乱された署名、上記証明書を上記署名対象に対する署名として出力する手段と、 を具備するブラインド署名の署名要求者装置。
  5. 5
    Each time a signature issuance request is received from a signing requester device, a temporary public key that includes information unique to the issuance and is associated with at least one of the signing party's public keys is generated. Means to publish and A means of signing the disturbed signature target received from the sign requester device with a private key and sending it to the sign requester device, A blind signature signer device comprising. 【請求項5】 署名要求者装置から署名発行要求を受信するごとにその発行に固有な情報を含み、かつ署名者装置の公開鍵の少くとも一つと関連付けられた一時的公開鍵を生成して公開する手段と、 署名要求者装置より受信した撹乱された署名対象に対し、秘密鍵で署名して署名要求者装置へ送る手段と、 を具備するブラインド署名の署名者装置。
  6. 7
    The process of making a signature issuance request to the signer device and For the signature issuance, it disturbs the temporary public key and its original public key that contain information unique to the issuance published by the signer's device and that is associated with at least one of the signer's public keys. And the process of doing The process of disturbing the signature target using the disturbed public key and sending it to the signer's device, The process of disturbing the signature received from the signer device to make it verifiable and generating a certificate showing the relationship between the original public key and the disturbed public key. The process of outputting the disturbed signature and the certificate together with the signature target as a signature for the signature target, and How to handle a signing requester device with a blind signature. 【請求項7】 署名者装置に署名発行要求を行う過程と、 その署名発行に対し、署名者装置から公開されたその発行に固有な情報を含み、かつ署名者装置の公開鍵の少くとも一つと関連付けられた一時的公開鍵及びそのもとの公開鍵を撹乱する過程と、 その撹乱された公開鍵を用いて署名対象を撹乱して署名者装置へ送る過程と、 署名者装置から受信した署名を撹乱して検証可能にすると共にもとの公開鍵と撹乱された公開鍵との関係を示す証明書を生成する過程と、 上記撹乱された署名及び上記証明書を上記署名対象に対する署名として署名対象と共に出力する過程と、 を有するブラインド署名の署名要求者装置の処理方法。
  7. 8
    The process of sending a signature issuance request to the signer device, Disrupts the temporary public key and its original public key that contain information unique to the issuance published by the signer's device for the signature issuance and that is associated with at least one of the signer's public keys. The process and The process of generating data based on the disturbed public key and the random number received from the signer device and sending the data to the signer device, The process of disturbing the signature received from the signer device so that it can be verified, The process of generating information that associates the disturbed signature with the signature target, Using the associated information and the information used to disturb the public key, the process of issuing a certificate showing the relationship between the original public key and the disturbed public key, and The disturbed signature, the process of outputting the certificate as a signature for the signature target, and A signature requester device processing method for blind signatures. 【請求項8】 署名者装置に署名発行要求を送る過程と、 その署名発行に対し署名者装置から公開されたその発行に固有な情報を含み、かつ署名者装置の公開鍵の少くとも一つと関連付けられた一時的公開鍵及びそのもとの公開鍵を撹乱する過程と、 その撹乱された公開鍵と、署名者装置から受信した乱数に基づいてデータを生成し、そのデータを署名者装置へ送る過程と、 署名者装置から受信した署名を検証可能なように撹乱する過程と、 その撹乱された署名と署名対象とを関連付けた情報を生成する過程と、 その関連付けられた情報と上記公開鍵の撹乱に用いた情報とを用いて、もとの公開鍵と撹乱された公開鍵との関係を示す証明書を発行する過程と、 上記撹乱された署名、上記証明書を上記署名対象に対する署名として出力する過程と、 を有するブラインド署名の署名要求者装置処理方法。
  8. 9
    Each time a signature issuance request is received from a signing requester device, a temporary public key that includes information unique to the issuance and is associated with at least one of the signing party's public keys is generated. The process of publishing and The process of signing the disturbed signature target received from the sign requester device with the private key and sending it to the sign requester device, A blind signature signer device processing method with. 【請求項9】 署名要求者装置から署名発行要求を受信するごとにその発行に固有な情報を含み、かつ署名者装置の公開鍵の少くとも一つと関連付けられた一時的公開鍵を生成して公開する過程と、 署名要求者装置より受信した撹乱された署名対象に対し、秘密鍵で署名して署名要求者装置へ送る過程と、 を有するブラインド署名の署名者装置処理方法。