International Association for Cryptologic Research

International Association
for Cryptologic Research

CryptoDB

Universal Padding Schemes for RSA with Optimal Bandwidth of Message Recovery

Authors:
Wenbo Mao
John Malone-Lee
Download:
URL: http://eprint.iacr.org/2003/029
Search ePrint
Search Google
Abstract: We prove that three OAEP-inspired randomised padding schemes (i.e., OAEP, OAEP+ and SAEP), when used with the RSA function in the trapdoor direction, form provably secure signature schemes with message recovery. Two of our three reductionist proofs are tight and hence provide exact security. Because of the exact security and OAEP's optimally high bandwidth for message recovery, our results form a desirable improvement from a previous universal RSA padding scheme good for both encryption and signature.
BibTeX
@misc{eprint-2003-11747,
  title={Universal Padding Schemes for RSA with Optimal Bandwidth of Message Recovery},
  booktitle={IACR Eprint archive},
  keywords={},
  url={http://eprint.iacr.org/2003/029},
  note={ wenbo.mao@hp.com 12123 received 11 Feb 2003, withdrawn 12 Mar 2003},
  author={Wenbo Mao and John Malone-Lee},
  year=2003
}