SPRINT: High-Throughput Robust Distributed Schnorr Signatures
Fabrice Benhamouda, Shai Halevi, Hugo Krawczyk, Yiping Ma, Tal Rabin
摘要
We describe high-throughput threshold protocols with guaranteed output delivery for generating Schnorr-type signatures. The protocols run a single message-independent interactive ephemeral randomness generation procedure (e.g., DKG) followed by a non-interactive multi-message signature generation procedure. The protocols offer significant increase in throughput already for as few as ten parties while remaining highly-efficient for many hundreds of parties with thousands of signatures generated per minute (and over 10,000 in normal optimistic case).
These protocols extend seamlessly to the dynamic/proactive setting, where each run of the protocol uses a new committee, and they support sub-sampling the committees from among an effectively unbounded number of nodes. The protocols work over a broadcast channel in both synchronous and asynchronous networks.
The combination of these features makes our protocols a good match for implementing a signature service over an (asynchronous) public blockchain with many validators, where guaranteed output delivery is an absolute must. In that setting, there is a system-wide public key, where the corresponding secret signature key is distributed among the validators. Clients can submit messages (under suitable controls, e.g. smart contracts), and authorized messages are signed relative to the global public key.
Asymptotically, when running with committees of parties, our protocols can generate signatures per run, while providing resilience against corrupted nodes, and using broadcast bandwidth of only group elements and scalars. For example, we can sign about messages using just under total bandwidth while supporting resilience against corrupted parties, or sign messages using just over total bandwidth with resilience against corrupted parties.
We prove security of our protocols by reduction to the hardness of the discrete logarithm problem in the random-oracle model.
问问这篇 Paper
问问你的智能体。
Lune 读过与它相关的顶会 Paper,每个回答都会注明依据哪几篇。
引用它的顶会 Paper5
- GoSSamer: Lightweight and Linear-Communication Asynchronous (Dynamic Proactive) Secret Sharing and the ApplicationsXinxin Xing, Yizhong Liu, Boyang Liao, Jianwei Liu 等S&P 2026 · 被引用 2 次
- Armadillo: Robust Single-Server Secure Aggregation for Federated Learning with Input ValidationYiping Ma, Yue Guo, Harish Karthikeyan, Antigoni PolychroniadouCCS 2025
- Dumbo-MPC: Efficient Fully Asynchronous MPC with Optimal ResilienceYuan Su, Yuan Lu, Jiliang Li, Yuyi Wang 等USENIX Security 2025
- SoK: Dlog-Based Distributed Key GenerationRenas Bacho, Alireza KavousiS&P 2025
- A Full Threshold NIST PQC-Compliant Framework for Distributed Trust in Federal Public Key InfrastructureKiarash Sedghighadikolaei, Changqi Sun, Thang Hoang, Bechir Hamdaoui 等S&P 2026
相关 Paper
- Fast Batched Asynchronous Distributed Key GenerationJens Groth, Victor ShoupEUROCRYPT 2024 · 被引用 19 次
- Two-Round Stateless Deterministic Two-Party Schnorr Signatures from Pseudorandom Correlation FunctionsYashvanth Kondi, Claudio Orlandi, Lawrence RoyCRYPTO 2023 · 被引用 19 次
- Threshold Schnorr with Stateless Deterministic Signing from Standard AssumptionsFrançois Garillot, Yashvanth Kondi, Payman Mohassel, Valeria NikolaenkoCRYPTO 2021 · 被引用 39 次
- Fully-Adaptive Two-Round Threshold Schnorr Signatures from DDHPaul Gerhart, Davide Li Calsi, Luigi Russo, Dominique SchröderEUROCRYPT 2026 · 被引用 1 次
- Adaptively Secure Three-Round Threshold Schnorr Signatures from DDHRenas Bacho, Sourav Das, Julian Loss, Ling RenCRYPTO 2025 · 被引用 12 次
