Lightweight distributed signature protocol for mobile computing and iot devices
Abstract
The techniques described herein may provide an efficient and secure two-party distributed signing protocol, for example, for the IEEE P1363 standard. For example, in an embodiment, method may comprise generating, at a key generation center, a first partial private cryptographic key for a user ID and a second partial private cryptographic key for the user ID, transmitting the first partial private cryptographic key to a first other device, transmitting the second partial private cryptographic key to a second other device, and generating a distributed cryptographic signature for a message using the first partial private cryptographic key and the second partial private cryptographic key.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A method comprising:
generating, at a key generation center, a first partial private cryptographic key for a user ID and a second partial private cryptographic key for the user ID; transmitting the first partial private cryptographic key to a first other device; transmitting the second partial private cryptographic key to a second other device; and generating a distributed cryptographic signature for a message using the first partial private cryptographic key and the second partial private cryptographic key.
2 . The method of claim 1 , wherein, when the first partial private cryptographic key and the second partial private cryptographic key are combined, a valid private cryptographic key is formed.
3 . The method of claim 1 , further comprising:
generating, at the key generation center, a partial public cryptographic key.
4 . The method of claim 2 , wherein generating the distributed cryptographic signature for the message comprises:
transmitting a request for a cryptographic signature from the first other device to the second other device; in response to receiving the request from the first other device, generating, at the second other device, a first plurality of intermediate values using a plurality of random numbers and the partial public cryptographic key; in response to receiving the first plurality of intermediate values from the second other device, generating, at the first other device, a second plurality of intermediate values using a plurality of random numbers and the message; in response to receiving the second plurality of intermediate values from the first other device, generating, at the second other device, a third plurality of intermediate values using the second partial private cryptographic key; and in response to receiving the third plurality of intermediate values from the second other device, generating, at the first other device, the distributed cryptographic signature using the first partial private cryptographic key.
5 . A system comprising a processor, memory accessible by the processor, and computer program instructions stored in the memory and executable by the processor to perform:
generating, at a key generation center, a first partial private cryptographic key for a user ID and a second partial private cryptographic key for the user ID; transmitting the first partial private cryptographic key to a first other device; transmitting the second partial private cryptographic key to a second other device; and generating a distributed cryptographic signature for a message using the first partial private cryptographic key and the second partial private cryptographic key.
6 . The system of claim 5 , wherein, when the first partial private cryptographic key and the second partial private cryptographic key are combined, a valid private cryptographic key is formed.
7 . The system of claim 6 , further comprising:
generating, at the key generation center, a partial public cryptographic key.
8 . The system of claim 7 , wherein generating the distributed cryptographic signature for the message comprises:
transmitting a request for a cryptographic signature from the first other device to the second other device; in response to receiving the request from the first other device, generating, at the second other device, a first plurality of intermediate values using a plurality of random numbers and the partial public cryptographic key; in response to receiving the first plurality of intermediate values from the second other device, generating, at the first other device, a second plurality of intermediate values using a plurality of random numbers and the message; in response to receiving the second plurality of intermediate values from the first other device, generating, at the second other device, a third plurality of intermediate values using the second partial private cryptographic key; and in response to receiving the third plurality of intermediate values from the second other device, generating, at the first other device, the distributed cryptographic signature using the first partial private cryptographic key.
9 . A computer program product for drug prescription prediction, the computer program product comprising a non-transitory computer readable storage having program instructions embodied therewith, the program instructions executable by a computer, to cause the computer to perform a method comprising:
generating, at a key generation center, a first partial private cryptographic key for a user ID and a second partial private cryptographic key for the user ID; transmitting the first partial private cryptographic key to a first other device; transmitting the second partial private cryptographic key to a second other device; and generating a distributed cryptographic signature for a message using the first partial private cryptographic key and the second partial private cryptographic key.
10 . The computer program product of claim 9 , wherein, when the first partial private cryptographic key and the second partial private cryptographic key are combined, a valid private cryptographic key is formed.
11 . The computer program product of claim 10 , further comprising:
generating, at the key generation center, a partial public cryptographic key.
12 . The computer program product of claim 11 , wherein generating the distributed cryptographic signature for the message comprises:
transmitting a request for a cryptographic signature from the first other device to the second other device; in response to receiving the request from the first other device, generating, at the second other device, a first plurality of intermediate values using a plurality of random numbers and the partial public cryptographic key; in response to receiving the first plurality of intermediate values from the second other device, generating, at the first other device, a second plurality of intermediate values using a plurality of random numbers and the message; in response to receiving the second plurality of intermediate values from the first other device, generating, at the second other device, a third plurality of intermediate values using the second partial private cryptographic key; and in response to receiving the third plurality of intermediate values from the second other device, generating, at the first other device, the distributed cryptographic signature using the first partial private cryptographic key.Join the waitlist — get patent alerts
Track US2023006811A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.