On Fair E-cash Systems Based on Group Signature Schemes
Abstract
A fair electronic cash system is a system that allows customers to make payments anonymously. Moreover, under certain circumstances, a trusted authority can revoke the anonymity of suspicious transactions. Various fair e-cash systems using group signature schemes have been proposed [4,15,16,18]. Unfortunately, they do not realize coin tracing [4,15,18] (the possibility to trace the coins withdrawn by a customer). In this paper, we describe several failures in the solution of [16] and we present a secure and efficient fair e-cash system based on a group signature scheme. Our system ensures traceability of double-spenders, supports coin tracing and provides coins that are unforgeable and anonymous under standard assumptions.
Keywords
Signature Scheme Blind Signature Random Oracle Model Blind Signature Scheme Group Signature SchemePreview
Unable to display preview. Download preview PDF.
References
- 1.G. Ateniese, J. Camenisch, M. Joye, G. Tsudik. A Practical and Provably Secure Coalition-Resistant Group Signature Scheme. Crypto’2000, volume 1880 of LNCS, pages 255–270. Springer-Verlag, 2000.Google Scholar
- 2.D. Boneh. The Decision Diffie-Hellman Problem. 3rd Algorithmic Number Theory Symposium, volume 1423 of LNCS, pages 48–63. Springer-Verlag, 1998.CrossRefGoogle Scholar
- 3.E. Brickell, P. Gemmel, D. Kravitz. Trustee-Based Tracing Extensions to Anonymous Cash and the Making of Anonymous Change. 6th ACM-SIAM, pages 457–466. ACM Press, 1995.Google Scholar
- 4.J. Camenisch, A. Lysyanskaya. An Efficient System for Non-transferable Anonymous Credentials with Optional Anonymity Revocation. Eurocrypt 2001, volume 2045 of LNCS, pages 93–118. Springer-Verlag, 2001.CrossRefGoogle Scholar
- 5.J. Camenisch, U.M. Maurer, M. Stadler. Digital Payment Systems with Passive Anonymity-Revoking Trustees. Esorics’96, pages 33–43. Springer-Verlag, 1996.Google Scholar
- 6.D. Chaum, E. van Heyst. Group Signatures. Eurocrypt’91, volume 547 of LNCS, pages 257–265. Springer-Verlag, 1991.Google Scholar
- 7.I. Damgård, E. Fujisaki. A Statistically-Hiding Integer Commitment Scheme Based on Groups with Hidden Order. Asiacrypt 2002, volume 2501 of LNCS, pages 143–159. Springer-Verlag, 2002.CrossRefGoogle Scholar
- 8.G. Davida, Y. Frankel, Y. Tsiounis, M. Yung. Anonymity Control in E-Cash Systems. Financial Crypto’97, volume 1318 of LNCS, pages 1–16. Springer-Verlag, 1997.Google Scholar
- 9.T. El Gamal. A Public Key Cryptosystem and a Signature Scheme Based on Discrete Logarithms, IEEE Trans. Inform. Theory, 31, pages 469–472. 1985.CrossRefMathSciNetzbMATHGoogle Scholar
- 10.A. Fiat, A. Shamir. How to Prove Yourself: Practical Solutions to Identification and Signature Problems. Crypto’86, volume 263 of LNCS, pages 186–194. Springer-Verlag, 1987.Google Scholar
- 11.Y. Frankel, Y. Tsiounis, M. Yung. Indirect Discourse Proofs: Achieving Efficient Fair Off-Line E-Cash. Asiacrypt’96, volume 1163 of LNCS, pages 286–300. Springer-Verlag, 1996.Google Scholar
- 12.Y. Frankel, Y. Tsiounis, M. Young. Fair Off-Line e-cash Made Easy, Asiacrypt’98, volume 1514 of LNCS, pages 257–270. Springer-Verlag, 1998.Google Scholar
- 13.E. Fujisaki, T. Okamoto. Statistical Zero-Knowledge Protocols Solution to Identification and Signature Problems. Crypto’97, volume 1294 of LNCS, pages 16–30. Springer-Verlag, 1997.Google Scholar
- 14.M. Gaud, J. Traoré. On the Anonymity of Fair Off-Line e-Cash Systems, Financial Crypto’03 (to appear).Google Scholar
- 15.G. Maitland, C. Boyd. Fair Electronic Cash Based on a Group Signature Scheme. ICICS 2001, volume 2229 of LNCS, pages 461–465. Springer-Verlag, 2001.Google Scholar
- 16.W. Qiu, K. Chen, D. Gu. A New Off-line Privacy Protecting E-Cash System with Revokable Anonymity. ISC 2002. 2002.Google Scholar
- 17.M. Stadler, J.M. Piveteau, J. Camenisch. Fair Blind Signatures, Eurocrypt’95, volume 921 of LNCS. pages 209–219. Springer-Verlag, 1995.Google Scholar
- 18.J. Traoré. Group Signatures and Their Relevance to Privacy-Protecting Off-Line Electronic Cash Systems. ACISP’99, volume 1587 of LNCS, pages 228–243. Springer-Verlag, 1999.Google Scholar