Skip to main content

2024 | OriginalPaper | Buchkapitel

Batch Signatures, Revisited

verfasst von : Carlos Aguilar-Melchor, Martin R. Albrecht, Thomas Bailleux, Nina Bindel, James Howe, Andreas Hülsing, David Joseph, Marc Manzano

Erschienen in: Topics in Cryptology – CT-RSA 2024

Verlag: Springer Nature Switzerland

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

We revisit batch signatures (previously considered in a draft RFC and used in multiple recent works), where a single, potentially expensive, “inner” digital signature authenticates a Merkle tree constructed from many messages. We formalise a construction and prove its unforgeability and privacy properties.
We also show that batch signing allows us to scale slow signing algorithms, such as those recently selected for standardisation as part of NIST’s post-quantum project, to high throughput, with a mild increase in latency and demonstrate the practical efficiency of batch signing in the context of TLS. For the example of Falcon-512 in TLS, we can increase the amount of connections per second by a factor 3.2, at the cost of an increase in the signature size by 14% and the median latency by 25%; both run on the same 30 core server. For SPHINCS\(^+\)-128, throughput improves by a factor 4.6, with a negligible impact on signature size and an 11% impact on median latency.
We also discuss applications where batch signatures allow us to increase throughput and to save bandwidth. For example, again for 16 Falcon-512 signatures, once one batch signature is available, the additional bandwidth for each of the remaining is only 82 bytes.

Sie haben noch keine Lizenz? Dann Informieren Sie sich jetzt über unsere Produkte:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Fußnoten
1
See also the discussion of Falcon’s performance in Sect. 2.3.
 
2
Commit d5be452, dated 28 April 2023.
 
Literatur
[ADWF+10]
Zurück zum Zitat Akdemir, K., et al.: Breakthrough AES Performance with Intel® AES New Instructions. Whitepaper, Intel (2010) Akdemir, K., et al.: Breakthrough AES Performance with Intel® AES New Instructions. Whitepaper, Intel (2010)
[Ben20]
Zurück zum Zitat Benjamin, D.: Batch Signing for TLS. Internet-Draft draft-ietf-tls-batch-signing-00, Internet Engineering Task Force. January 2020. Work in Progress Benjamin, D.: Batch Signing for TLS. Internet-Draft draft-ietf-tls-batch-signing-00, Internet Engineering Task Force. January 2020. Work in Progress
[Ben22]
Zurück zum Zitat Benjamin, D.: Private communication (2022) Benjamin, D.: Private communication (2022)
[BHK+19]
Zurück zum Zitat Bernstein, D.J., Hülsing, A., Kölbl, S., Niederhagen, R., Rijneveld, J., Schwabe, P.: The SPHINCS\(^+\) signature framework. In: Cavallaro, L., Kinder, J., Wang, X., Katz, J (eds.), ACM CCS 2019, pp. 2129–2146. ACM Press, November 2019 Bernstein, D.J., Hülsing, A., Kölbl, S., Niederhagen, R., Rijneveld, J., Schwabe, P.: The SPHINCS\(^+\) signature framework. In: Cavallaro, L., Kinder, J., Wang, X., Katz, J (eds.), ACM CCS 2019, pp. 2129–2146. ACM Press, November 2019
[BOW23]
Zurück zum Zitat Benjamin, D., O’Brien, D., Westerbaan, B.: Merkle Tree Certificates for TLS. Internet-Draft draft-davidben-tls-merkle-tree-certs-00, Internet Engineering Task Force, March 2023. Work in Progress Benjamin, D., O’Brien, D., Westerbaan, B.: Merkle Tree Certificates for TLS. Internet-Draft draft-davidben-tls-merkle-tree-certs-00, Internet Engineering Task Force, March 2023. Work in Progress
[FHKS22]
Zurück zum Zitat Fregly, A., Harvey, J., Kaliski, Jr., B.S., Sheth, S.: Merkle tree ladder mode: reducing the size impact of NIST PQC signature algorithms in practice. Cryptology ePrint Archive, Report 2022/1730 (2022). https://eprint.iacr.org/2022/1730 Fregly, A., Harvey, J., Kaliski, Jr., B.S., Sheth, S.: Merkle tree ladder mode: reducing the size impact of NIST PQC signature algorithms in practice. Cryptology ePrint Archive, Report 2022/1730 (2022). https://​eprint.​iacr.​org/​2022/​1730
[GK12]
Zurück zum Zitat Gueron, S., Krasnov, V.: Parallelizing message schedules to accelerate the computations of hash functions. J. Cryptogr. Eng. 2(4), 241–253 (2012)CrossRef Gueron, S., Krasnov, V.: Parallelizing message schedules to accelerate the computations of hash functions. J. Cryptogr. Eng. 2(4), 241–253 (2012)CrossRef
[GPV08]
Zurück zum Zitat Gentry, C., Peikert, C., Vaikuntanathan, V.: Trapdoors for hard lattices and new cryptographic constructions. In: Ladner, R.E., Dwork, C. (eds.) 40th ACM STOC, pp. 197–206. ACM Press, May 2008 Gentry, C., Peikert, C., Vaikuntanathan, V.: Trapdoors for hard lattices and new cryptographic constructions. In: Ladner, R.E., Dwork, C. (eds.) 40th ACM STOC, pp. 197–206. ACM Press, May 2008
[HW22]
[LDK+22]
Zurück zum Zitat Lyubashevsky, V., et al.: CRYSTALS-DILITHIUM. Technical report, National Institute of Standards and Technology (2022) Lyubashevsky, V., et al.: CRYSTALS-DILITHIUM. Technical report, National Institute of Standards and Technology (2022)
[PFH+22]
Zurück zum Zitat Prest, T., et al.: FALCON. Technical report, National Institute of Standards and Technology (2022) Prest, T., et al.: FALCON. Technical report, National Institute of Standards and Technology (2022)
[SKD20]
Zurück zum Zitat Sikeridis, D., Kampanakis, P., Devetsikiotis, M.: Post-quantum authentication in TLS 1.3: a performance study. In: NDSS 2020. The Internet Society, February 2020 Sikeridis, D., Kampanakis, P., Devetsikiotis, M.: Post-quantum authentication in TLS 1.3: a performance study. In: NDSS 2020. The Internet Society, February 2020
[SSW20]
Zurück zum Zitat Schwabe, P., Stebila, D., Wiggers, T.: Post-quantum TLS without handshake signatures. In: Ligatti, J., Ou, X., Katz, J., Vigna, G (eds.) ACM CCS 2020, pp. 1461–1480. ACM Press, November 2020 Schwabe, P., Stebila, D., Wiggers, T.: Post-quantum TLS without handshake signatures. In: Ligatti, J., Ou, X., Katz, J., Vigna, G (eds.) ACM CCS 2020, pp. 1461–1480. ACM Press, November 2020
[ST16]
Zurück zum Zitat Santesson, S., Tschofenig, H.: Transport Layer Security (TLS) Cached Information Extension. RFC 7924, July 2016 Santesson, S., Tschofenig, H.: Transport Layer Security (TLS) Cached Information Extension. RFC 7924, July 2016
[TSH+12]
Zurück zum Zitat Topalovic, E., Saeta, B., Huang, L.S., Jackson, C., Boneh, D.: Towards short-lived certificates. In: IEEE Oakland Web 2.0 Security and Privacy (W2SP) (2012) Topalovic, E., Saeta, B., Huang, L.S., Jackson, C., Boneh, D.: Towards short-lived certificates. In: IEEE Oakland Web 2.0 Security and Privacy (W2SP) (2012)
[You22]
Zurück zum Zitat Young, S.D.: National security memo on promoting United States leadership in quantum computing while mitigating risks to vulnerable cryptographic systems (NSM-10). Executive Office of the President, Office of Management and Budget, Washington, DC, USA (2022) Young, S.D.: National security memo on promoting United States leadership in quantum computing while mitigating risks to vulnerable cryptographic systems (NSM-10). Executive Office of the President, Office of Management and Budget, Washington, DC, USA (2022)
Metadaten
Titel
Batch Signatures, Revisited
verfasst von
Carlos Aguilar-Melchor
Martin R. Albrecht
Thomas Bailleux
Nina Bindel
James Howe
Andreas Hülsing
David Joseph
Marc Manzano
Copyright-Jahr
2024
DOI
https://doi.org/10.1007/978-3-031-58868-6_7

Premium Partner