Efficient extension of standard schnorr/RSA signatures into universal designated-verifier signatures

Ron Steinfeld*, Huaxiong Wang, Josef Pieprzyk

*Corresponding author for this work

Research output: Contribution to journalArticlepeer-review

91 Citations (Scopus)


Universal Designated-Verifier Signature (UDVS) schemes are digital signature schemes with additional functionality which allows any holder of a signature to designate the signature to any desired designated-verifier such that the designated-verifier can verify that the message was signed by the signer, but is unable to convince anyone else of this fact. Since UDVS schemes reduce to standard signatures when no verifier designation is performed, it is natural to ask how to extend the classical Schnorr or RSA signature schemes into UDVS schemes, so that the existing key generation and signing implementation infrastructure for these schemes can be used without modification. We show how this can be efficiently achieved, and provide proofs of security for our schemes in the random oracle model.

Original languageEnglish
Pages (from-to)86-100
Number of pages15
JournalLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Publication statusPublished - 2004

Fingerprint Dive into the research topics of 'Efficient extension of standard schnorr/RSA signatures into universal designated-verifier signatures'. Together they form a unique fingerprint.

Cite this