batch verification.pdf
batch verification.pdf
batch verification.pdf
Create successful ePaper yourself
Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.
Introduction<br />
ECDSA Algorithm<br />
A Naive Algorithm for ECDSA Batch Verification<br />
A New Batch-<strong>verification</strong> Algorithm for ECDSA (S1)<br />
A More Efficient Batch-<strong>verification</strong> Algorithm (S2)<br />
Efficient Variants of S1 and S2<br />
Experimental Results<br />
Conclusion<br />
References<br />
Conclusion<br />
There are several ways to extend our study, some of which are listed<br />
below.<br />
◮ We described a way to reduce the running time of the<br />
symbolic-addition phase of Algorithm S2 from O(mt 2 ) to O( √ mt 2 ).<br />
An analogous speedup for the elimination phase would be very<br />
useful.<br />
◮ Our best symbolic-computation algorithm runs in O(mt 2 ) time.<br />
Removal of a factor of t would be useful to achieve higher speedup<br />
values.<br />
◮ It is of interest to study our algorithms in conjunction with the<br />
earlier works on ECDSA*.<br />
◮ Our <strong>batch</strong> <strong>verification</strong> algorithms can be easily ported to other<br />
curves (like the Koblitz and Pseudorandom families recommended by<br />
NIST).<br />
Sabyasachi Karati<br />
Batch Verification of ECDSA Signatures AfricaCrypt 2012 Ifrane, Morocco