密码学报(中英文)2026,Vol.13Issue(4):658-671,14.DOI:10.13868/j.cnki.jcr.000871
基于商用密码SM9的前向安全标识签名方案
Forward-Secure Identity-Based Signature Based on SM9
摘要
Abstract
SM9 identity-based cryptography as a Chinese cryptographic industrial standard and national standard,has been widely used in financial transactions and e-government,while the SM9 identity-based signature scheme does not support forward security function expansion and is hard to deal with a series of security issues caused by key compromise.This study introduces a forward-secure identity-based signature scheme FS-IBS based on SM9 identity-based signature.The proposed scheme leverages complete-binary-tree-based key derivation with stack-based private-key update mechanism.It maps each time period to a binary-tree node and guarantees the unforgeability of historical signatures via the unidirectional private-key update algorithm.Compared with SM9,the signature length of proposed scheme only increases by one group element,and the signature verification only increases by one bilinear pairing operation,which is independent of the length of the receiver's identity.The proposed scheme is based on(q,n)-CBDHI assumption and is EUF-FS-CMIA secure under the random oracle model.Extensive experimental comparisons demonstrate that the cost of proposed scheme in the process of achieving forward security is modest and manageable.关键词
SM9/标识密码/密钥更新/前向安全/密钥泄露Key words
SM9/identity-based cryptography/key update/forward security/key compromise分类
信息技术与安全科学引用本文复制引用
严笑天,许胜民,马金花..基于商用密码SM9的前向安全标识签名方案[J].密码学报(中英文),2026,13(4):658-671,14.基金项目
国家自然科学基金(62502056,62572123,62402109,62425205,62372108,62032005,62102090) (62502056,62572123,62402109,62425205,62372108,62032005,62102090)
福州市科技局(2026-Y-020)National Natural Science Foundation of China(62502056,62572123,62402109,62425205,62372108,62032005,62102090) (2026-Y-020)
Fuzhou Municipal Science and Technology Bureau(2026-Y-020) (2026-Y-020)