next up previous
Next: The BiBa Signature Scheme Up: Introduction Previous: Introduction

Our Contributions

We propose the BiBa signature scheme, a new one-time signature scheme based on one-way functions without trapdoors. The BiBa signature exploits the birthday paradox to achieve efficiency and security.

BiBa provides a more compact signature and is faster to verify than previous schemes. The public verification key can be large, but if off-line dissemination of the public key is possible, the BiBa signature offers super-fast verification. We believe that it provides one of the fastest signature verifications today.

We design a broadcast authentication protocol based on the BiBa signature scheme. It was an open problem to design a broadcast authentication system that can simultaneously support efficient real-time transmission and efficient authentication, offer perfect robustness to packet loss, and scale perfectly with respect to the number of receivers. Our construction is general and also applies to other signature schemes based on one-way functions without trapdoors, e.g. the k-times signature [23].


next up previous
Next: The BiBa Signature Scheme Up: Introduction Previous: Introduction

Adrian Perrig
Mon Nov 26 15:18:51 PST 2001