The Lamport signature scheme shows how to construct a signature scheme for one use from any one-way function.
Let be a positive integer and let be the set of messages. Let be a one-way function and let be the set of "signatures".
For let be chosen randomly and .
The key consists of s and s. s are secret, s are public.
Let be a message.
- notation and
Eve cannot forge a signature because she is unable to invert one-way functions.
Note: A Lamport signature can only be used to sign one message. However combined with hash trees, it is possible to only publish a single hash instead of making the signing of many messages more efficient space-wise.
When used in Merkle trees, Lamport signatures form a digital signature scheme that is secure against quantum computers, the only known digital signature scheme to do so.
This article is licensed under the GNU Free Documentation License.
It uses material from the
"Lamport signature scheme".
Home Page • arts • business • computers • games • health • hospitals • home • kids & teens • news • physicians • recreation• reference • regional • science • shopping • society • sports • world