Forum: Mikrocontroller und Digitale Elektronik Crypto - Problem


von Moritz O. (moritz_o)


Lesenswert?

I have to solve the following problem and I am trying to do it since 
more then two weeks, but I have no idea how to solve it. It is an 
assignment for my study and I have to hand in tomorrow, unfortunately I 
am not able to solve it.
So my question, can somebody help me? with some good hints or solutions?

Here is the question:
\textbf{13.10 (Probabilistic full domain hash).} Consider the following 
signature scheme $\mathcal{S} = (G,S,V)$ with the message space 
$\mathcal{M}$, and using a hash function $H: \mathcal{M} \times 
\mathcal{R} \rightarrow \mathbb{Z}_n$:
\begin{equation}
\begin{split}
G():= \{(n,d) \xleftarrow[]{R} RSAGen(\ell,e), \quad pk:=(n,e), \quad 
sk:=(n,d), \quad output (pk,sk)\};\\
S(sk,m) := \{r \xleftarrow[]{R} \mathcal{R}, \quad y \leftarrow H(m,r), 
\quad \sigma \leftarrow y^d \in \mathbb{Z}_n, \quad output (\sigma, 
r)\};\\
V(pk,m,(\sigma,r)) := \{y \leftarrow H(m,r), \quad accept \; if \; y = 
\sigma^e \; and \; reject \; otherwise \}.
\end{split}
\end{equation}

Show that this signature is secure if the RSA assumption holds for 
$(\ell,e)$, the quantity $1/|\mathcal{R}|$ is negligible, and H is 
modeled as a random oracle. Moreover, the reduction to inverting RSA is 
tight.\\
\textbf{Disscusion:} While $\Sm'_{RSA-FDH}$, from Section 13.5, also has 
a tight reduction, the construction here does not use a PRF. The cost is 
that signatures are longer because r is included in the signature.


Thank you very much.

von Pandur S. (jetztnicht)


Lesenswert?

Ich denke eher nicht.

von c-hater (Gast)


Lesenswert?

Moritz O. schrieb:

> I have to solve the following problem and I am trying to do it since
> more then two weeks, but I have no idea how to solve it. It is an
> assignment for my study and I have to hand in tomorrow, unfortunately I
> am not able to solve it.

You should consider to break your study ASAP. Appearantly your 
intellectual skills are entirely insufficient. Don't continue wasting my 
tax pays!

von Nudelhaus (Gast)


Lesenswert?

c-hater schrieb:
> Moritz O. schrieb:
>
>> I have to solve the following problem and I am trying to do it since
>> more then two weeks, but I have no idea how to solve it. It is an
>> assignment for my study and I have to hand in tomorrow, unfortunately I
>> am not able to solve it.
>
> You should consider to break your study ASAP. Appearantly your
> intellectual skills are entirely insufficient. Don't continue wasting my
> tax pays!

Bitte kompetenten Psychiater suchen und ins Thema Psychologie einlesen.

Ein Anfang für dich: 
https://de.wikipedia.org/wiki/Posttraumatische_Verbitterungsst%C3%B6rung

Bitte melde dich an um einen Beitrag zu schreiben. Anmeldung ist kostenlos und dauert nur eine Minute.
Bestehender Account
Schon ein Account bei Google/GoogleMail? Keine Anmeldung erforderlich!
Mit Google-Account einloggen
Noch kein Account? Hier anmelden.