There is a newer version of the record available.

Published October 4, 2025 | Version v4

Identity-Based Cryptography: Schemes and Implementations

Authors/Creators

  • 1. ALBANESE Research Lab 研究实验室

Description

This comprehensive paper presents a thorough analysis of Identity-Based Cryptography (IBC), focusing on both encryption (IBE) and signature (IBS) schemes, along with novel contributions in threshold implementations and zero-knowledge proofs. We provide detailed mathematical formulations and practical implementations of major IBE schemes including Boneh-Franklin, Boneh-Boyen, and Sakai-Kasahara, all enhanced with Fujisaki-Okamoto transformations for achieving IND-CCA2 security. For IBS systems, we examine Barreto, Cha-Cheon, Galindo-Garcia, Hess, and ShangMi schemes, demonstrating their EUF-CMA security properties. A significant contribution of this work is the development of novel non-interactive zero-knowledge proofs (ZKPs) tailored for identity-based systems. We introduce two distinct ZKP constructions: a generalized approach for IBE/IBS systems based on Schnorr-type proofs adapted for bilinear pairings, and a specialized ZKP for the ShangMi/Barreto scheme offering alternative security properties. These ZKPs enable efficient verification of private key knowledge without disclosure, leveraging the Fiat-Shamir heuristic for non-interactive operation. Furthermore, we present a practical threshold IBE/IBS implementation that distributes the Private Key Generator (PKG) functionality across multiple servers using Shamir's Secret Sharing. This enhancement mitigates single points of failure and strengthens resilience against key compromise while maintaining compatibility with existing identity-based cryptographic primitives. All schemes are implemented using the BLS12-381 elliptic curve and are accompanied by complete mathematical correctness proofs. The implementations are publicly available through Go Playground links, providing practical reference implementations for researchers and practitioners. This work bridges theoretical cryptography with practical implementation, offering valuable insights for privacy-preserving authentication systems, decentralized identity management, and secure delegation protocols in identity-based infrastructure.

Files

ibe.pdf

Files (354.2 kB)

Name Size Download all
md5:431ee4782b402b7e522d7356ce4e9dab
354.2 kB Preview Download

Additional details

Software

Repository URL
https://github.com/pedroalbanese/edgetk
Programming language
Go

References

  • Boneh, D., & Franklin, M. (2001). Identity-Based Encryption from the Weil Pairing. In Advances in Cryptology - CRYPTO 2001 (pp. 213-229). Springer.
  • Fujisaki, E., & Okamoto, T. (1999). Secure Integration of Asymmetric and Symmet- ric Encryption Schemes. In Advances in Cryptology - CRYPTO 1999 (pp. 537-554). Springer.
  • Boneh, D., & Boyen, X. (2004). Ecient Selective-ID Secure Identity-Based Encryp- tion Without Random Oracles. In Advances in Cryptology - EUROCRYPT 2004 (pp. 223-238). Springer.
  • Sakai, R., & Kasahara, M. (2003). ID based Cryptosystems with Pairing on Elliptic Curve. Cryptology ePrint Archive, Report 2003/054.
  • Barreto, P. S. L. M., Libert, B., McCullagh, N., & Quisquater, J. J. (2005). E- cient and Provably-Secure Identity-Based Signatures and Signcryption from Bilinear Maps. In Advances in Cryptology - ASIACRYPT 2005 (pp. 515-532). Springer.
  • Cha, J. C., & Cheon, J. H. (2003). An Identity-Based Signature from Gap Die- Hellman Groups. In Public Key Cryptography - PKC 2003 (pp. 18-30). Springer.
  • Galindo, D., & Garcia, F. D. (2009). A Schnorr-Like Lightweight Identity-Based Signature Scheme. In AFRICACRYPT 2009 (pp. 135-148). Springer.
  • Hess, F. (2003). Ecient Identity Based Signature Schemes Based on Pairings. In Selected Areas in Cryptography - SAC 2002 (pp. 310-324). Springer.
  • Gao, W., Wang, X., & Zhang, C. (2012). Ecient identity-based threshold decryp- tion scheme from bilinear pairings.
  • ISO/IEC 15946-5:2022. Information technology - Security techniques - Crypto- graphic techniques based on elliptic curves - Part 5: Elliptic curve generation.
  • Shamir, A. (1979). How to Share a Secret. Communications of the ACM, 22 (11), 612-613.
  • Fiat, A., & Shamir, A. (1986). How to Prove Yourself: Practical Solutions to Iden- tication and Signature Problems. In Advances in Cryptology - CRYPTO 1986 (pp. 186-194). Springer.
  • Schnorr, C. P. (1990). Ecient Identifcation and Signatures for Smart Cards. In Advances in Cryptology CRYPTO' 89 (pp. 239-252). Springer.
  • Schnorr, C. P. (1991). Ecient Signature Generation by Smart Cards. Journal of Cryptology, 4 (3), 161-174.
  • SM9 Identity-Based Cryptography. (2016). Chinese Commercial Cryptography Ad- ministration Oce. GM/T 0044-2016.
  • ISO/IEC 18033-5:2015/Amd.1:2021. Information technology - Security techniques - Encryption algorithms - Part 5: Identity-based ciphers - SM9 mechanism.