发明名称 IMPROVED EIGAMAL SIGNATURE SCHEMES
摘要 There is disclosed a method of generating a digital signature of a message m. A signature component s of the digital signature is calculated by first masking the long-term private key d using a single additive operation to combine the key d with a first value. The masked value is then multiplied by a second value to obtain component s. The first value is calculated using the message m and another component of the digital signature, and the second value is derived using the inverse of a component of the first value. In this way, the signature component s is generated using a method that counters the effectiveness of side channel attacks, such as differential side channel analysis, by avoiding a direct multiplication using long-term private key d.
申请公布号 CA2732726(A1) 申请公布日期 2011.08.26
申请号 CA20112732726 申请日期 2011.02.25
申请人 CERTICOM CORP. 发明人 BROWN, DANIEL RICHARD L.
分类号 H04L9/32;H04L9/28;H04L12/58 主分类号 H04L9/32
代理机构 代理人
主权项
地址