|
Cryptography: Theory and Practice
by Douglas Stinson CRC Press, CRC Press LLC ISBN: 0849385210 Pub Date: 03/17/95 |
| Previous | Table of Contents | Next |
to be a primitive element, a is a secret exponent (0 ≤ a ≤ p - 2) such that gcd (a, p - 1) = 1, and β = αa mod p. The key K = (α, a, β), where α and β are public and a is secret. Let
be a message to be signed. Bob computes the signature sig(x) = (γ, δ), where

and

The only difference from the original ElGamal Scheme is in the computation of δ. Answer the following questions concerning this modified scheme.
denote the number of coordinates in which x and x′ differ. Show at Oscar can now sign
new messages.
Show that Oscar can now sign
new messages.
such that sigK(42) = (1118, 1449).

Now, suppose Bob finds the signature (2219, 458) has been forged on the message 4785.
| Previous | Table of Contents | Next |