DOI: 10.14489/vkit.2015.06.pp.043-049

Казарин О. В.
(с. 43-49)

Аннотация. Рассмотрена схема подписи с верификацией по запросу, в которой проверка корректности подписи может быть осуществлена только в присутствии сгенерировавшего ее субъекта. Доказана безопасность предложенной схемы подписи с верификацией по запросу. Представлены ее варианты – конвертируемая и селективно конвертируемая схемы, в которых открытие некоторого конфиденциального параметра схемы дает возможность верифицировать все имеющиеся подписи или только одну выбранную.

Ключевые слова:  электронная подпись; интерактивная система доказательств с нулевым разглашением; защита про-граммного обеспечения.


Kazarin О. V.
(pp. 43-49)

Abstract. In this paper we consider the undeniable signature scheme, in which its verification can be carried out only in the presence of the subject that generated the signature. The basic layout of the digital signature is taken from the national standard GOST R 34.10–2012 and shows: firstly, that the proposed undeniable scheme is unconditionally secure, and secondly, that there are different variants of it – convertible and selectively convertible undeniable signature scheme, in which the opening a confidential parameter allows respectively to either verify all the signatures, or the only one selected signature. One of the main incentives for the development of this signature scheme lies in the fact that in publication by Varnovsky N. “Provable security of digital signature in the tamper-proof model”, http://eprint.iacr.org/2008/252.pdf, published in 2008, it has been demonstrated for the first time for domestic electronic signature schemes, that with certain assumptions the electronic signature scheme described in domestic GOST R 34.10–2001 is secure (it is relatively easy to prove that this proof of security naturally extends to electronic signature scheme described in GOST R 34.10–2012). Thus, this became another argument in the proof of security of the proposed undeniable signature scheme. The development of these schemes is conducted as a part of research of methods and tools for software protection against various malicious acts, in this case, against violations of integrity and authenticity of the programs. Currently many platforms of Microsoft, Apple, Google etc. use so-called Code Signing Certificates, with which software is signed to confirm authorship of the programs, and to ensure that the code has not been modified after application of electronic signature of corresponding certificate authority. Anyone with access to public key of signature certificate can verify it. In our case, if we use the proposed undeniable signature scheme instead of the usual schemes of electronic signature, it will be possible to verify the signature only upon the fact of some activity (event instance) and only in the presence of representatives of software developer. And here lies a good scope of work for organizations to achieve any of their business objectives (and with that to implement appropriate security policies adopted by the organization). For example, it is possible to validate previously distributed executable program code only after the conclusion of a contract for their purchase (update) by the potential consumer of the software product.

Keywords: Electronic signature; Zero-knowledge interactive proofs system; Software protection.


О. В. Казарин (Московский государственный университет им. М. В. Ломоносова, Москва) E-mail: Этот e-mail адрес защищен от спам-ботов, для его просмотра у Вас должен быть включен Javascript  


О. V. Kazarin (Lomonоsov Moscow State University) E-mail: Этот e-mail адрес защищен от спам-ботов, для его просмотра у Вас должен быть включен Javascript  


