International Association for Cryptologic Research

International Association
for Cryptologic Research


Paper: Append-Only Signatures

Eike Kiltz
Anton Mityagin
Saurabh Panjwani
Barath Raghavan
Abstract: We present a new primitive--Append-only Signatures (AOS)--with the property that any party given an AOS signature aossig[M_1] on message M_1 can compute aossig[M_1||M_2] for any message M_2, where M_1||M_2 is the concatenation of M_1 and M_2. We define the security of AOS, present concrete AOS schemes, and prove their security under standard assumptions. In addition, we find that despite its simple definition, AOS is equivalent to Hierarchical Identity-based Signatures (HIBS) through efficient and security-preserving reductions. Finally, we show direct applications of AOS to problems in network security. Our investigations indicate that AOS is both useful in practical applications and worthy of further study as a cryptographic primitive.
  title={Append-Only Signatures},
  booktitle={IACR Eprint archive},
  keywords={foundations / Algebraic Signatures, Append-only Signatures, Hierarchical Identity-based Signatures},
  note={An extended abstract will appear at ICALP '05 12909 received 28 Apr 2005, last revised 6 May 2005},
  author={Eike Kiltz and Anton Mityagin and Saurabh Panjwani and Barath Raghavan},