The invention discloses an SM9-based verifiable fair broadcast proxy re-
encryption method and a
hardware architecture thereof, and relates to the technical field of
information security. The re-
encryption method comprises the following steps: encrypting an original message based on SM9 to generate an initial
ciphertext, generating a re-
encryption key based on a private key of a data owner and an authorized
user identifier set, and sending the initial
ciphertext and the re-encryption key to a
proxy server; the
proxy server performs re-encryption operation on the initial
ciphertext based on the re-encryption key to generate a re-encrypted ciphertext, and broadcasts the re-encrypted ciphertext to all authorized users, and the authorized users perform decryption
verification on the received re-encrypted ciphertext by using own private keys; and a public verifier can perform
verification arbitration on the re-encrypted ciphertext based on a non-interactive zero-knowledge proof protocol. According to the re-encryption method provided by the invention, a multi-user application scene is expanded, direct
verification of the re-encrypted ciphertext is realized, and a fair and neutral dispute judgment rule is established.