Journal of Cryptology

, Volume 29, Issue 4, pp 833–878 | Cite as

Constant-Size Structure-Preserving Signatures: Generic Constructions and Simple Assumptions

  • Masayuki Abe
  • Melissa Chase
  • Bernardo David
  • Markulf Kohlweiss
  • Ryo Nishimaki
  • Miyako Ohkubo


This paper presents efficient structure-preserving signature schemes based on simple assumptions such as decisional linear. We first give two general frameworks for constructing fully secure signature schemes from weaker building blocks such as variations of one-time signatures and random message secure signatures. They can be seen as refinements of the Even–Goldreich–Micali framework, and preserve many desirable properties of the underlying schemes such as constant signature size and structure preservation. We then instantiate them based on simple (i.e., not q-type) assumptions over symmetric and asymmetric bilinear groups. The resulting schemes are structure-preserving and yield constant-size signatures consisting of 11–14 group elements, which compares favorably to existing schemes whose security relies on q-type assumptions.


Structure-preserving signatures Tagged one-time signatures Partially one-time signatures Extended random message attacks 


© International Association for Cryptologic Research 2015

Authors and Affiliations

  • Masayuki Abe
    • 1
  • Melissa Chase
    • 2
  • Bernardo David
    • 3
  • Markulf Kohlweiss
    • 4
  • Ryo Nishimaki
    • 1
  • Miyako Ohkubo
    • 5
  1. 1.NTT Secure Platform LaboratoriesNTT CorporationTokyoJapan
  2. 2.Microsoft ResearchRedmondUSA
  3. 3.Aarhus UniversityAarhusDenmark
  4. 4.Microsoft ResearchCambridgeUK
  5. 5.Security Fundamentals Laboratory, NSRINICTTokyoJapan

