Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

41 results about "Aggregate signature" patented technology

Flexible access control using expressive monotone-policy aggregate signatures

A method and system for generating and verifying a monotone policy aggregate signature σf a message. The method involves storing a common message at a local storage device, generating a signature for the common message using a secret cryptographic key at a local signature generation module, and transmitting the user signature to an aggregator module. The aggregator module combines the user signature with other user signatures to generate an aggregate signature. The aggregate signature is then transmitted to a verification module for verification. The monotone policy aggregate signatures are constructed from non-interactive batch arguments that support adaptive subset extraction for expressive monotone policies.
Owner:NTT RESEARCH INC

Smart tea garden block chain traceability system and method

The invention discloses a smart tea garden block chain traceability system and method, and the method comprises the following steps: carrying out the standardization processing and aggregation of data of each link, and generating an event set identifier; performing compact commitment on the event set by adopting an RSA accumulator to generate a staged commitment value; introducing a BLS threshold signature mechanism, and performing joint signature on the event set by a plurality of trusted nodes to generate an aggregation signature; binding and writing the commitment value and the aggregation signature into a block chain; in traceability query, the existence of events is verified through an RSA accumulator, and node consensus is verified through a BLS threshold signature, so that a safe, transparent and verifiable traceability system is constructed. The system covers the whole process information management of tea from planting, processing, storage, transportation to sales.
Owner:WUYISHAN YEJIAYAN TEA CO LTD

Signature control method, non-transitory computer-readable storage medium for storing signature control program, and information processing device

A signature control method implemented by a computer, the signature control method including: acquiring, by a processor circuit of the computer, a plurality of pieces of document information and signature information that corresponds to each piece of document information of the plurality of pieces of document information; generating, by the processor circuit of the computer, aggregate signature information obtained by aggregating the signature information that corresponds to the each piece of document information of the plurality of acquired pieces of document information on a basis of the plurality of acquired pieces of document information; and outputting, by the processor circuit of the computer, the generated aggregate signature information in association with aggregate public key information obtained by aggregating public key information that corresponds to the each piece of document information of the plurality of pieces of document information and the plurality of pieces of document information.
Owner:FUJITSU LTD

Communication system, aggregation terminal device, server, and program to be executed by computer

To provide a communication system capable of minimizing an amount of signature data.SOLUTION: When a signature system is a one-to-one signature system, each of the terminal devices 5 to 7 transmits a data msg detected by itself, identification information id of itself, a signature system type, and the tag tag generated by signing the data msg and the identification information id using a one-to-one signature key to a gateway 3, and the gateway 3 transmits [msg, id, type, tag] received from each of the terminal devices 5 to 7 to a server 1. When the signature system is an aggregate signature system, each of the terminal devices 5 to 7 transmits [msg, id, type, tag' (=tag generated by signing using the aggregate signature key)] to the gateway 3, and the gateway 3 transmits the aggregate tag a_tag and [msg, id] generated by signing msg, id, tag' using the aggregate signature key to the server 1.SELECTED DRAWING: Figure 1
Owner:ATR ADVANCED TELECOMM RES INST INT

Rapidly verifiable aggregate signatures

A method for aggregating digital signatures includes receiving first data packages from signers, each first data package including a signer identifier, a payload, and a payload signature; verifying the payload signatures; bundling correctly signed payloads into a batch; obtaining a batch digest, and proofs of inclusion of the payloads in the batch. In some embodiments, the method further includes sending second data packages including the batch digest and a respective proof of inclusion to the signers, the respective proof of inclusion proving that the payload of the respective signer is included in the batch; receiving third data packages from the signers, each third data package including the signer identifier, and a respective batch digest signature. The method may additionally include verifying the batch digest signatures; aggregating correctly signed batch digest signatures; and including the aggregated batch digest signature in the batch.
Owner:ECOLE POLYTECHNIQUE FEDERALE DE LAUSANNE (EPFL)

Internet of vehicles cross-domain authentication and key agreement method based on double-chain structure

The invention discloses an Internet of Vehicles cross-domain authentication and key agreement method based on a double-chain structure. The method comprises the following steps: generating system public parameters based on a trusted authority and writing the system public parameters into a main chain; generating a corresponding identity encryption value, a reputation value, an area number and a vehicle and road side unit binding value based on the road side unit registration information; generating a virtual identity, a secret value and a binding parameter of the vehicle based on the vehicle user registration information; the vehicle obtains a binding value of the vehicle and the roadside unit based on the binding parameter and initiates authentication to the roadside unit to obtain an area number; when the vehicle needs cross-domain communication, the vehicle generates a hidden identity and a cross-domain request based on target area verification node information, and a verification node generates an aggregation signature and an encryption seed after verifying the cross-domain request; the main node verifies the legality of the vehicle based on the aggregation signature, and decrypts the encrypted seed to obtain a seed; and the main node queries in the main chain based on the area number and the virtual identity of the vehicle to obtain a secret value, and verifies the session key based on the secret value and the seed.
Owner:ANQING NORMAL UNIV

Heterogeneous Aggregate Signature System for Verification Center

The present invention provides a heterogeneous aggregate signature system for a verification center, comprising: the verification center obtains a signature sequence (ID i ,m i ,R i ,S i ,T i ), calculate the ID i is the identity information of each signing terminal; m i is the message to be encrypted; T i is the timestamp; S i is the characteristic code of each signature terminal; R i =r i P, r i The parameter is randomly selected by each signing terminal; the equation is calculated and verified based on the signature code of each signing terminal type. If true, the signatures of n user terminals are verified successfully. This invention provides a system that, by rationally setting signature codes for aggregated verification, enables heterogeneous signing terminals to sign based on their respective public key systems, with the verification center then performing unified aggregated verification. This reduces the verifier's system initialization and signature verification overhead, and provides signature and authentication services for users of different cryptographic systems.
Owner:THE SECOND RES INST OF CIVIL AVIATION ADMINISTRATION OF CHINA

Large-scale distributed intelligent terminal trusted data aggregation method and system

The invention discloses a trusted data aggregation method and system for a large-scale distributed intelligent terminal. The method comprises the following steps: step 1, initializing and defining public parameters and private parameters of each entity of an access layer; step 2, the intelligent terminal of the end layer converts the multi-dimensional data into single data for encryption and signature by using the parameters in the step 1), sends the encrypted data and the signature to an edge aggregator of the edge layer, and sends the signature to a block chain of the chain layer at the same time; step 3, an edge aggregator of the edge layer performs weighted aggregation on the encrypted data in the step 2), aggregates signatures, and sends the signatures to a control center of the cloud layer and a block chain of the chain layer; and step 4, the control center of the cloud layer decrypts by using the aggregated data in the step 3) to obtain a single-dimensional data aggregation value, and the block chain of the chain layer performs signature verification by using the aggregated signature value sent in the step 3) and the single-dimensional data aggregation value decrypted by the control center.
Owner:ZHEJIANG SCI-TECH UNIV +1

An efficient and privacy-preserving asynchronous payment method based on blockchain

The application discloses a kind of high efficiency and privacy protection asynchronous payment method based on block chain, belong to the field of block chain privacy protection technology.This method supports the case where multiple transactions are generated in the system to protect user privacy.The signature of all transactions of the user is aggregated into a single aggregate signature for aggregate verification.This method extends the single verification of locally verifiable signature to subset verification.Later, without knowing all user transactions, the subset of transactions that need to be delayed can be decompressed from this aggregate signature.The method deploys a server to provide a time key so that the delayed payment service provider can only rewrite the on-chain transaction at a specific point in time.Follow-up changes to the transaction through the trapdoor of chameleon hashing only require node network verification, saving time and arithmetic capability compared to generating a new transaction.The method has practical security features and more acceptable efficiency in terms of computational complexity and communication overhead.
Owner:BEIJING INST OF TECH

A consensus method, system and consensus node

A consensus method, system, and consensus node. The method includes: determining a consensus node within a consensus group initiating a consensus proposal in a current round of consensus based on a random number from a previous round, the determined consensus node initiating the consensus proposal; each consensus node within the consensus node group signing the consensus proposal using its own first private key share in a threshold signature algorithm to generate a first signature share, and broadcasting the first signature share to other consensus nodes within the consensus group; consensus nodes that have collected a threshold number of first signature shares using a first recovery function in the threshold signature algorithm to recover a first aggregate signature, and broadcasting the first aggregate signature and the corresponding first aggregate public key to a blockchain network; blockchain nodes that have received the first aggregate signature and the first aggregate public key verifying the first aggregate signature using the first aggregate public key, and upon successful verification, determining the consensus proposal corresponding to the first aggregate signature as the current consensus result.
Owner:ANT BLOCKCHAIN TECHNOLOGY (SHANGHAI) CO LTD

Log synchronization method, system, equipment and medium

The invention discloses a log synchronization method, system and device and a medium, and relates to the technical field of block chains. The method of the main node comprises the following steps: acquiring a request message sent by a client, and performing validity verification on a signature of the client; in response to the fact that a first verification result of the client signature is valid, adding the request message to a main node account book, and broadcasting a log entry with the request message to all slave nodes, so that each slave node feeds back a part of signature to which the slave node belongs; generating an aggregated signature according to the signatures of all the parts; generating a zero-knowledge proof according to the request message; broadcasting the aggregated signature and the zero-knowledge proof to each slave node, so that each slave node performs validity verification on the log entry, the aggregated signature and the zero-knowledge proof, and feeds back a second verification result; and according to each second verification result, submitting the log entry and broadcasting a log copy message, so that each slave node copies the log entry into a slave node account book. According to the scheme, the safety of the distributed system is improved.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Data asset life cycle management system based on block chain

The invention relates to the technical field of block chain security and data asset management, and discloses a data asset life cycle management system based on a block chain. And encryption group parameters and generators are generated and checked through a secure random source, so that the randomness and the anti-attack capability of a bottom-layer password system are ensured. And a secret polynomial is adopted to segment the master key and distribute the master key to each node, so that distributed key management is realized, and the risk of single-point loss is reduced. Attributes are automatically judged during asset registration, the life cycle stage is accurately mapped, and management automation and state tracking are improved. A standardized event message is constructed for each asset state change, and node part signature and threshold aggregation signature are adopted to ensure the consistency and non-tampering property of an audit chain. And the private key share is dynamically updated during node change or period remodeling, so that the risk of long-term key leakage is reduced. After the assets are terminated, all keys are automatically destroyed, only necessary chain records are left, and the residual keys are prevented from being abused.
Owner:ZHEJIANG FORESTRY UNIVERSITY

Block chain oracle machine-based trusted data space data interaction method

ActiveCN122001560AGuaranteed verifiabilityGuaranteed non-tamperabilityUser identity/authority verificationData connectionData pack
The invention provides a trusted data space data interaction method based on a block chain oracle machine, and relates to the technical field of block chains, and the method comprises the steps: receiving a data packet sent by a data provider; performing BLS aggregation signature verification on the BLS signature data, recalculating a local commitment value, comparing the local commitment value with a vector commitment value to confirm content integrity, and judging data admission only after the dual verification is passed; and in response to a data request of a data user for a target data item, obtaining the original data, the digital signature and the Merkle member proof corresponding to the target data item based on the Merkle DAG data structure, generating a verifiable object, and returning the verifiable object to the data user. The block chain oracle machine is introduced as a trusted data space access data connector, and verifiable access and traceable circulation of data resources are realized by constructing a trusted bridging link among the data resources, the block chain oracle machine data connector, the block chain account book and the trusted data space.
Owner:SHANDONG UNIV

A lightweight and secure grouping method for mobile intelligent nodes

This invention relates to the field of secure arraying technology for intelligent nodes, and discloses a lightweight secure arraying method for mobile intelligent nodes. The method includes: a system initialization phase generating elliptic curve formula parameters and an IPFS public key set; a public key validity verification phase using Groth16 zk-SNARK for efficient proof of anonymous public key ownership; a cross-domain authentication phase generating a one-time temporary regional identifier and updating the IPFS set; a signature generation phase employing a short-ring signature algorithm to construct an aggregated signature to support efficient batch signature verification; and a traceability phase extracting traceable factors to locate the true signer. This invention balances node anonymity, lightweight design, and traceability, making it suitable for resource-constrained scenarios such as connected vehicles and the Internet of Things.
Owner:CHANGCHUN UNIV OF SCI & TECH

Data aggregation method and device

The embodiment of the invention provides a data aggregation method and device, and the method comprises the steps: an edge gateway carries out the aggregation operation of data from a plurality of data producers, and generates an aggregation signature, the data is a ciphertext which is encrypted and digitally signed by the corresponding data producers, and the aggregation signature is generated by the edge gateway; by means of the data aggregation method and device, the problem that an existing industrial internet data aggregation scheme is not comprehensive in consideration in the aspect of data storage safety is solved, and then the privacy and integrity of the data are guaranteed.
Owner:BEIJING XINGYUN DIGITAL TECHNOLOGY CO LTD

Efficient aggregation anonymous verification method for vehicular ad hoc networks and related devices

The embodiment of the application discloses a kind of vehicle ad hoc network efficient aggregation anonymous verification method and related device, the method is verified based on the freshness of time stamp first, guarantee the freshness of time stamp from source;Then the validity of single signature is verified one by one, eliminate received invalid signature;Finally, aggregate signature verification is carried out, and the overall validity of all signatures can be verified by once bilinear pairing operation, compared with the verification of traditional method one by one, multiple bilinear pairing operations are needed, and the calculation complexity can be reduced.In high concurrency scene, processing delay is shortened from seconds to hundreds of milliseconds, which can effectively solve the problem of low efficiency of dynamic message authentication in Internet of Things, especially in vehicle networking, and meet the real-time demand.In addition, the application also introduces the smart contract and distributed digital identity verification technology of block chain, which can prevent malicious attacks of Internet of Things virus or node, and it is particularly important to improve privacy protection and prevent privacy leakage.
Owner:ANHUI AGRICULTURAL UNIVERSITY

A signature-based set semantic similarity connection method

The application relates to a signature-based set semantic similarity connection method, and belongs to the fields of databases and information retrieval. The method comprises four parts: firstly, a classification tree construction step: a classification tree is constructed according to a WordNet knowledge base given a data set; secondly, a set signature step: each set in the data set is signed to obtain a corresponding signature data set; thirdly, a data preprocessing step: the sets in the signature data set are sorted to obtain a sorted data set; and finally, a connection processing step: self-connection is performed on the sets in the sorted data set to obtain a set of semantic similarity results. The method is based on signature prefix filtering technology and length filtering technology, and finally realizes the set semantic similarity connection method, so that the set semantic connection efficiency can be effectively improved.
Owner:KUNMING UNIV OF SCI & TECH

Authenticated cross-subnet communication

Various aspects of the subject technology relate to systems, methods, and machine-readable media for cross-chain communication in a blockchain platform. Various aspects may include accepting, at a first blockchain, a first transaction including a message and a message payload. Aspects may also include validating, at the first blockchain, the message by signing the message using signature keys of one or more validators in a first set of validators of the first blockchain. Aspects may also include generating an aggregate signature based on the signature keys of the one or more validators in a first set of validators. Aspects may also include submitting a second transaction on to a second blockchain, the second transaction including the message and the aggregate signature. Aspects may include validating, at the second blockchain, the second transaction based on a shared registry.
Owner:AVA LABS INC

Privacy protection method for VANET against collusion attacks based on certificateless aggregate signature

The present invention provides a VANET privacy protection method based on certificateless aggregate signatures to protect against collusion attacks, relating to the field of in-vehicle network security technologies. Specifically, the method comprises: constructing a VANET privacy protection model based on certificateless aggregate signatures to protect against collusion attacks, comprising a vehicle equipped with an onboard unit (OBU), a roadside unit (RUU), an application server, a key generation center (KGC), and a trusted institution; wherein the RBU is primarily responsible for aggregating vehicle signatures and transmitting them to the application server; the application server is primarily responsible for verifying the validity of the aggregate signatures and detecting whether the VANET has been attacked by collusion, and sending invalid aggregate signatures that fail verification to the trusted institution; the KGC is primarily responsible for generating partial private keys for the vehicle; and the trusted institution is primarily responsible for providing registration services for the RBU and the vehicle and generating a pseudonym for the vehicle, thereby using the vehicle's pseudonym to reveal the true identity of an illegal signature from the application server.
Owner:NORTHEASTERN UNIV CHINA

Layering and pipeline-based Byzantine fault-tolerant improved consensus protocol implementation method and system

The invention discloses a Byzantine fault-tolerant improved consensus protocol implementation method and system based on layering and pipeline, and the method comprises the following specific steps: S1, a preparation stage PREPARE: a master node generates and broadcasts a new proposal Bv, and after a common node votes and accepts, a group leader collects a signature and aggregates the signature into a partial aggregation signature, and then sends the partial aggregation signature to the master node; s2, pre-submission stage PRECOMMIT: after aggregating a set number of preparation votes, the main node generates and broadcasts a pre-submission message; after the common nodes vote and approve, the group leader collects and partially aggregates signatures again, and then sends the signatures to the main node; s3, COMMIT in a submission stage: after the main node aggregates a set number of pre-submission tickets, broadcasting a final submission message; and the common node submits the block after verification, and jointly triggers the view to be switched to the next main node. Through the aggregation signature technology, the communication complexity is reduced, signature aggregation is changed from original leader aggregation to excitation node primary aggregation and leader secondary aggregation, and the verification process is accelerated.
Owner:HANGZHOU DIANZI UNIV

Authenticated cross-subnet communication

Various aspects of the technologies described herein relate to systems, methods, and machine-readable media for cross-chain communication on a blockchain platform. Various aspects may include accepting a first transaction, comprising a message and a message payload, on a first blockchain. The aspects may also include verifying a message on the first blockchain by signing the message using the signing keys of one or more validators in a first set of validators on the first blockchain. The aspects may also include generating an aggregate signature based on the signing keys of one or more validators in a first set of validators. The aspects may also include submitting a second transaction, comprising a message and an aggregate signature, on a second blockchain. The aspects may also include verifying the second transaction on the second blockchain based on a shared registry.
Owner:AVA LABS INC

A method and device for verifying a carbon footprint data revision request

The application discloses a kind of carbon footprint data revision request verification method and device, belong to data management technical field. Including: in response to the revision request of carbon footprint data from multiple authorized units, obtain the independent attribute signature of multiple authorized units respectively;According to the independent attribute signature of multiple authorized units respectively, verify whether all attributes that each authorized unit possesses include multiple preset core attributes;In the case where all attributes that each authorized unit possesses include multiple core attributes, the independent attribute signature of multiple authorized units is aggregated into corresponding aggregate signature;The validity of aggregate signature is verified, and in the case where aggregate signature passes validity verification, the revision operation corresponding to revision request is executed on carbon footprint data.The method provided by the application significantly improves the verification efficiency in the multi-agency collaborative authorization scenario through the aggregation signature and batch verification mechanism.
Owner:CHINA THREE GORGES CORPORATION

Water meter data security interaction and blockchain evidence storage methods and smart remote water meters

This invention relates to the field of water supply supervision. By collecting water meter pulse counting data and environmental parameters, it achieves data standardization and temperature compensation, and generates metering metadata with timestamps, cumulative values, and checksum tags based on the ISO / IEC 14882 standard. On this basis, a sliding window LSTM model is used to identify water use behavior categories and associate them with knowledge graph nodes of regulatory intent, achieving a semantic mapping between behavior and regulatory rules. Combined with blockchain technology, verifiable semantic commitments and evidence certificates are generated through hashing, Merkle root authentication, and aggregate signatures, supporting permission auditing and on-chain traceability based on SNARK zero-knowledge proofs. The system also incorporates feedback data from regulators and uses graph neural networks to dynamically optimize the behavior confidence threshold. This technical solution effectively ensures the data integrity, compliance, and regulatory transparency of water use behavior, enhancing the intelligence and traceability of the water audit system.
Owner:GUANGNUO (YANGGU) ELECTRONIC TECH CO LTD

Collaborative signing method and system based on encoding

The application provides a kind of based on encoding's collaborative signature method and system, the method includes: initialization center generates and distributes global public key and private key component according to cryptographic parameter, each signature participant receives the message to be signed after, based on chameleon hash function according to the message to be signed, global public key and private key component, generate the signature information of each signature participant, signature aggregation party carries out aggregation processing to the signature information of each signature participant, obtains signature set, according to global public key, signature set and the identity information of signature verification party, generate the signature set to be verified, signature verification party according to the identity information of itself, global public key, the message to be signed and the signature set to be verified carries out verification processing, and according to the verification result determines whether to receive signature set.Not only can reduce the interaction times of participant in collaborative signature process, but also can greatly reduce signature size, reduce the burden of multi-party communication, and improve overall signature efficiency.
Owner:中电信量子信息科技集团有限公司

Intelligent connected vehicle data credible traceability system and method based on distributed ledger

The application belongs to the technical field of computers, and particularly relates to an intelligent networked vehicle data credible traceability system and method based on a distributed ledger, which comprises a trusted execution environment module, a group aggregated signature module, a chain decentralized storage network and a distributed ledger, and realizes whole-link credibility measurement of vehicle-end data from the beginning of generation, breaks through the bottleneck of linear growth of signature verification calculation amount, and still maintains efficient operation under the scale of one million vehicles, and provides data traceability ability with legal effect for traffic accident responsibility determination, insurance claim settlement and other scenes.
Owner:SHAANXI TRANSPORTATION VOCATIONAL & TECH COLLEGE

Lightweight safe formation method for mobile intelligent nodes

The invention relates to the technical field of safe formation of intelligent nodes, and discloses a lightweight safe formation method for mobile intelligent nodes. In the system initialization stage, elliptic curve publication parameters and an IPFS public key set are generated; in the public key legality verification stage, efficient holding certification is carried out on the anonymous public key based on Groth16zk-SNARK; in the cross-domain authentication stage, a one-time region temporary identifier is generated, and an IPFS set is updated; in the signature generation stage, a short-ring signature algorithm is adopted to construct an aggregation signature so as to support batch efficient signature verification; and extracting traceable factors to locate a real signer in the responsibility-traceable stage. The method gives consideration to node anonymity, light weight and responsibility traceability, and is suitable for resource-limited scenes such as the Internet of Vehicles and the Internet of Things.
Owner:CHANGCHUN UNIV OF SCI & TECH

Microgrid block chain rapid transaction method based on optimized PBFT

PendingCN121998763AAvoid the risk of single point of attackImprove robustnessFinancePayment schemes/modelsEngineeringFinancial transaction
The invention provides a microgrid block chain rapid transaction method based on optimized PBFT. The method comprises the following steps: firstly, collecting transaction history and output stability parameters of distributed energy nodes (DERs) in a microgrid, and establishing a dynamic credit scoring model; then, a verifiable random function is utilized to elect a consensus leader from candidate nodes, and a safety access mechanism adapting to topological changes is formed; and the leader node generates a variation Schnorr signature in combination with the electric energy transaction data and the state timestamp of the power distribution network, and transmits the variation Schnorr signature in the logic fragment through multicast. And verifying the replica node, generating a partial signature and aggregating the partial signature to realize message compression. And finally, verifying the aggregated signature in batches, updating the credit score and asynchronously caching the block. According to the method, communication congestion and delay of the PBFT in high-frequency transactions are relieved, and the system throughput and scheduling stability are improved.
Owner:XI'AN PETROLEUM UNIVERSITY

A blockchain-based network information security processing method and system

The application discloses a kind of network information security processing method and system based on blockchain, comprising the following steps: collecting security event source data in network environment and carrying out analysis, generate security processing abstract information;Security processing abstract information is encoded into security state vector;Security state vector generates KZG commitment, gets commitment value, and generates corresponding open proof, collectively encapsulated as HotStuff candidate proposal;HotStuff candidate proposal is sent to different verification node, and signature vote is generated for security processing abstract information;The signature vote that satisfies legal quantity requirement is executed BLS aggregate signature processing, and generates aggregate legal certificate;Commitment confirmation is executed, and chain security processing record is formed;Chain security processing record in blockchain account book is read, target field is verified, and security processing result is output.The application improves the trusted confirmation ability of network information security processing result.
Owner:YANGZHOU SHUANGHUI TECHNOLOGY CO LTD

Distributed multi-layer aggregation signature method based on identity

The invention provides an identity-based distributed multi-layer aggregation signature method, which is applied to a system comprising a main node and a plurality of sub-nodes, and comprises the following steps: any sub-node sends a first key generation request to the main node, and the first key generation request comprises identity information of the sub-nodes; the main node responds to the first secret key generation request and carries out secret key extraction based on the identity information of the child nodes so as to obtain a first private key-public key pair based on the identity information of the child nodes and send the first private key-public key pair to the corresponding child nodes; the child node aggregates and signs the message based on the first private key-public key pair. In addition, any sub-node can respond to the key generation request of the corresponding secondary sub-node according to the process based on the private key-public key pair of the sub-node. According to the method, the expandability of a key distribution strategy is ensured by using an identity-based public key system, and the calculation and communication burden of large-scale signature and verification is reduced by means of an aggregation signature technology.
Owner:BEIJING JIAOTONG UNIV

Low-altitude Internet of Things bidirectional anonymous authentication method based on BLS aggregation signature

The invention discloses a low-altitude Internet of Things bidirectional anonymous authentication method based on a BLS aggregation signature. The method comprises the steps that a trusted mechanism generates and discloses bilinear pairing system parameters; the unmanned aerial vehicle registers with a ground control station to obtain a public and private key pair based on a BLS algorithm and an initial dynamic pseudonym with timeliness; the unmanned aerial vehicle generates a BLS signature for the authentication message by using the current dynamic pseudonym and the private key and broadcasts the BLS signature; the ground control station executes aggregation verification on the received at least one BLS signature, and verifies the validity of all signatures at one time; the two parties complete bidirectional authentication after the verification is passed; and after the authentication session ends, the unmanned aerial vehicle updates the dynamic pseudonym without mathematical association between the new and old pseudonyms. According to the method, the calculation complexity of batch verification is reduced to a constant level through the BLS aggregation signature, and the authentication delay in a high-concurrency scene is remarkably reduced; and intersession linkability is cut off through a dynamic pseudonym updating mechanism, and identity and track privacy protection is realized.
Owner:JIANGSU UNIV OF TECH