BiBa provides a more compact signature and is faster to verify than previous schemes. The public verification key can be large, but if off-line dissemination of the public key is possible, the BiBa signature offers super-fast verification. We believe that it provides one of the fastest signature verifications today.
We design a broadcast authentication protocol based on the BiBa signature scheme. It was an open problem to design a broadcast authentication system that can simultaneously support efficient real-time transmission and efficient authentication, offer perfect robustness to packet loss, and scale perfectly with respect to the number of receivers. Our construction is general and also applies to other signature schemes based on one-way functions without trapdoors, e.g. the -times signature [23].