We show that, under some natural conditions, the pairs (r, s) produced by the ElGamal signature scheme are uniformly distributed. In particular this implies that values of r and s are not correlated. The result is based on some new estimates of exponential sums.
|Number of pages||8|
|Journal||Applicable Algebra in Engineering, Communications and Computing|
|Publication status||Published - Apr 2002|