Research Article

Revocable ID-Based Signature with Short Size over Lattices

Table 1

Comparisons between the existing IBS/RIBS schemes and our RIBS scheme.

Tian and Huang’s IBS scheme [9]Xiang’s RIBS scheme [15]Our RIBS scheme

Lattice typeGPV lattice [11]GPV lattice [11]NTRU lattice [14]
Signing key size
Signature size
Computation cost of signing
Computation cost of verifying
Revocable functionalityNoSecure channelPublic channel
Security propertyID-UF-ACMA secureRID-UF-ACMA secureRID-UF-ACMA secure

: the security parameter; : positive integers; : the number of users; ; ; ; ; ; ; : the cost of executing a multiplication operation in ; : the cost of executing the Samplepre algorithm in [12].