Advances in Cryptology - ASIACRYPT 2010

Volume 6477 of the series Lecture Notes in Computer Science pp 395-412

A Group Signature Scheme from Lattice Assumptions

  • S. Dov GordonAffiliated withDept. of Computer Science, University of Maryland
  • , Jonathan KatzAffiliated withDept. of Computer Science, University of Maryland
  • , Vinod VaikuntanathanAffiliated withMicrosoft Research


Group signature schemes allow users to sign messages on behalf of a group while (1) maintaining anonymity (within that group) with respect to an outside observer, yet (2) ensuring traceability of a signer (by the group manager) when needed. In this work we give the first construction of a group signature scheme based on lattices (more precisely, the learning with errors assumption), in the random oracle model. Towards our goal, we construct a new algorithm for sampling a basis for an orthogonal lattice, together with a trapdoor, that may be of independent interest.