{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,12]],"date-time":"2025-10-12T03:38:17Z","timestamp":1760240297180,"version":"build-2065373602"},"reference-count":36,"publisher":"MDPI AG","issue":"5","license":[{"start":{"date-parts":[[2019,5,1]],"date-time":"2019-05-01T00:00:00Z","timestamp":1556668800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"name":"the Ministry of Science and Technology of Republic of China","award":["MOST 107-2221-E-019-017"],"award-info":[{"award-number":["MOST 107-2221-E-019-017"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Symmetry"],"abstract":"<jats:p>The Traditional Authenticated Encryption (AE) scheme is a single-user cryptographic mechanism which only enables one designated verifier to authenticate the ciphertext. Although several group-oriented AE variants have also been proposed to eliminate such a limitation, they require shared verification. This motivated us to think of a scenario of three-party communication environments where each party runs independent processes without cooperation. In this paper, we realize a novel three-party AE (abbreviated to TPAE) scheme in which two designated verifiers can solely decrypt the same ciphertext and then inspect the validity of embedded signature. Additionally, we also show that our TPAE construction is computationally secure using the well-defined IND-CCA2 and the EF-CMA adversary games in the proof model of random oracles. The comparison results will demonstrate the computational efficiency of our mechanism.<\/jats:p>","DOI":"10.3390\/sym11050605","type":"journal-article","created":{"date-parts":[[2019,5,2]],"date-time":"2019-05-02T03:15:22Z","timestamp":1556766922000},"page":"605","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["A Pairing-Based Three-Party Authenticated Encryption Scheme without Shared Secrets"],"prefix":"10.3390","volume":"11","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-3657-3241","authenticated-orcid":false,"given":"Han-Yu","family":"Lin","sequence":"first","affiliation":[{"name":"Department of Computer Science and Engineering, National Taiwan Ocean University, Keelung 202, Taiwan"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"1968","published-online":{"date-parts":[[2019,5,1]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","first-page":"644","DOI":"10.1109\/TIT.1976.1055638","article-title":"New Directions in Cryptography","volume":"IT-22","author":"Diffie","year":"1976","journal-title":"IEEE Trans. Inf. Theory"},{"key":"ref_2","doi-asserted-by":"crossref","first-page":"469","DOI":"10.1109\/TIT.1985.1057074","article-title":"A Public Key Cryptosystem and a Signature Scheme Based on Discrete Logarithms","volume":"IT-31","author":"ElGamal","year":"1985","journal-title":"IEEE Trans. Inf. Theory"},{"key":"ref_3","doi-asserted-by":"crossref","first-page":"120","DOI":"10.1145\/359340.359342","article-title":"A Method for Obtaining Digital Signatures and Public-Key Cryptosystems","volume":"21","author":"Rivest","year":"1978","journal-title":"Commun. ACM"},{"key":"ref_4","doi-asserted-by":"crossref","first-page":"285","DOI":"10.1080\/00207160410001661294","article-title":"Signatures Scheme with Message Recovery and Its Applications","volume":"81","author":"Sekhar","year":"2004","journal-title":"Int. J. Comput. Math."},{"key":"ref_5","unstructured":"Schneider, S. (1998, January 9\u201311). Formal Analysis of a Non-Repudiation Protocol. Proceedings of the 11th IEEE Computer Security Foundations Workshop, Rockport, MA, USA."},{"key":"ref_6","unstructured":"Hou, F., Wang, Z., Tang, Y., and Liu, Z. (July, January 28). Protecting Integrity and Confidentiality for Data Communication. Proceedings of the 9th International Symposium on Computers and Communications (ISCC\u201904), Alexandria, Egypt."},{"key":"ref_7","doi-asserted-by":"crossref","first-page":"1186","DOI":"10.1109\/32.106973","article-title":"A Uniform Presentation of Confidentiality Properties","volume":"17","author":"Jacob","year":"1991","journal-title":"IEEE Trans. Softw. Eng."},{"key":"ref_8","doi-asserted-by":"crossref","first-page":"1212","DOI":"10.1049\/el:19940856","article-title":"Authenticated Encryption Schemes with Low Communication Costs","volume":"30","author":"Horster","year":"1994","journal-title":"Electron. Lett."},{"key":"ref_9","unstructured":"Stallings, W. (2017). Cryptography and Network Security: Principles and Practices, Pearson. [7th ed.]."},{"key":"ref_10","first-page":"63","article-title":"The Limited Verifier Signature and Its Application","volume":"E82-A","author":"Araki","year":"1999","journal-title":"IEICE Trans. Fundam. Electron. Comput. Sci."},{"key":"ref_11","first-page":"515","article-title":"A Universal Forgery on Araki et al.\u2019s Convertible Limited Verifier Signature Scheme","volume":"E86-A","author":"Zhang","year":"2003","journal-title":"IEICE Trans. Fundam. Electron. Comput. Sci."},{"key":"ref_12","doi-asserted-by":"crossref","first-page":"205","DOI":"10.1016\/S0164-1212(01)00143-1","article-title":"Convertible Authenticated Encryption Scheme","volume":"62","author":"Wu","year":"2002","journal-title":"J. Syst. Softw."},{"key":"ref_13","unstructured":"Huang, H.F., and Chang, C.C. (2003, January 10\u201313). An Efficient Convertible Authenticated Encryption Scheme and Its Variant. Proceedings of the 5th International Conference on Information and Communications Security (ICICS 2003), Huhehaote, China."},{"key":"ref_14","doi-asserted-by":"crossref","first-page":"1285","DOI":"10.1016\/j.amc.2004.10.057","article-title":"Practical Convertible Authenticated Encryption Schemes Using Self-Certified Public Keys","volume":"169","author":"Lv","year":"2005","journal-title":"Appl. Math. Comput."},{"key":"ref_15","unstructured":"Yang, F.Y. (2019, February 11). Available online: http:\/\/eprint.iacr.org\/2005\/456."},{"key":"ref_16","doi-asserted-by":"crossref","first-page":"419","DOI":"10.1093\/comjnl\/bxm090","article-title":"Selectively Convertible Authenticated Encryption in the Random Oracle Model","volume":"51","author":"Chien","year":"2008","journal-title":"Comput. J."},{"key":"ref_17","doi-asserted-by":"crossref","first-page":"351","DOI":"10.1142\/S0129054109006607","article-title":"A New Convertible Authenticated Encryption Scheme Based on the ElGamal Cryptosystem","volume":"20","author":"Lee","year":"2009","journal-title":"Int. J. Found. Comput. Sci."},{"key":"ref_18","first-page":"481","article-title":"Secure Convertible Authenticated Encryption Scheme Based on RSA","volume":"33","author":"Wu","year":"2009","journal-title":"Informatica-Lithuan"},{"key":"ref_19","doi-asserted-by":"crossref","first-page":"739","DOI":"10.1142\/S0129054111008325","article-title":"A Novel Identity-Based Key-Insulated Convertible Authenticated Encryption Scheme","volume":"22","author":"Lin","year":"2011","journal-title":"Int. J. Found. Comput. Sci."},{"key":"ref_20","doi-asserted-by":"crossref","first-page":"1724","DOI":"10.1016\/j.jnca.2011.06.005","article-title":"New Identity-Based Key-Insulated Convertible Multi-Authenticated Encryption Scheme","volume":"34","author":"Hsu","year":"2011","journal-title":"J. Netw. Comput. Appl."},{"key":"ref_21","first-page":"252","article-title":"Group-Oriented Data Access Structure Using Threshold-CAE Scheme and Its Extension","volume":"43","author":"Lin","year":"2014","journal-title":"Inf. Technol. Control"},{"key":"ref_22","first-page":"530","article-title":"\u201cPCMAE: A Proxy Convertible Multi-AE Scheme and Its Variant","volume":"46","author":"Lin","year":"2017","journal-title":"Inf. Technol. Control"},{"key":"ref_23","doi-asserted-by":"crossref","first-page":"172","DOI":"10.1002\/ett.1522","article-title":"A Publicly Verifiable PCAE Scheme for Confidential Applications with Proxy Delegation","volume":"23","author":"Wu","year":"2012","journal-title":"Trans. Emerg. Telecommun. Technol."},{"key":"ref_24","doi-asserted-by":"crossref","first-page":"1239","DOI":"10.12785\/amis\/080338","article-title":"Convertible Authenticated Encryption Scheme with Hierarchical Access Control","volume":"8","author":"Hsu","year":"2014","journal-title":"Appl. Math. Inf. Sci."},{"key":"ref_25","doi-asserted-by":"crossref","first-page":"661","DOI":"10.1016\/j.ipl.2011.03.021","article-title":"Improved Convertible Authenticated Encryption Scheme with Provable Security","volume":"111","author":"Lin","year":"2011","journal-title":"Inf. Process. Lett."},{"key":"ref_26","first-page":"771","article-title":"An Efficient Strong Designated Verifier Proxy Signature Scheme for Electronic Commerce","volume":"28","author":"Lin","year":"2012","journal-title":"J. Inf. Sci. Eng."},{"key":"ref_27","doi-asserted-by":"crossref","unstructured":"Lin, H.Y., Wu, T.S., Huang, T.Y., and Yeh, Y.S. (2008, January 26\u201328). Self-Certified Proxy Convertible Authenticated Encryption Scheme. Proceedings of the 8th International Conference on Intelligent System Design and Applications (ISDA 2008), Kaohsiung, Taiwan.","DOI":"10.1109\/ISDA.2008.139"},{"key":"ref_28","doi-asserted-by":"crossref","first-page":"154","DOI":"10.1016\/j.ins.2012.02.051","article-title":"Provably Convertible Multi-Authenticated Encryption Scheme for Generalized Group Communications","volume":"199","author":"Lu","year":"2012","journal-title":"Inf. Sci."},{"key":"ref_29","first-page":"1","article-title":"Authenticated Encryption Scheme Based on Paillier System with Verifiable Public Keys","volume":"2","author":"Wu","year":"2012","journal-title":"Commun. Comput. Secur."},{"key":"ref_30","doi-asserted-by":"crossref","first-page":"974","DOI":"10.1016\/j.jss.2008.12.040","article-title":"Efficient Self-Certified Proxy CAE Scheme and Its Variants","volume":"82","author":"Wu","year":"2009","journal-title":"J. Syst. Softw."},{"key":"ref_31","first-page":"7983","article-title":"On the Construction of DL-Based Convertible Authenticated Encryption Scheme with Message Linkages","volume":"16","author":"Wu","year":"2013","journal-title":"Inf. Int. Interdiscip. J."},{"key":"ref_32","unstructured":"ISO\/IEC 9594-8 (2001). Information Technology\u2014Open Systems Interconnection\u2014The Directory: Public-Key and Attribute Certificate Frameworks, International Organization for Standardization."},{"key":"ref_33","doi-asserted-by":"crossref","first-page":"361","DOI":"10.1007\/s001450010003","article-title":"Security Arguments for Digital Signatures and Blind Signatures","volume":"13","author":"Pointcheval","year":"2000","journal-title":"J. Cryptol."},{"key":"ref_34","doi-asserted-by":"crossref","first-page":"948","DOI":"10.1016\/j.compeleceng.2010.02.001","article-title":"Forgery Attacks on Kang et al.\u2019s Identity-Based Strong Designated Verifier Signature Scheme and Its Improvement with Security Proof","volume":"36","author":"Lee","year":"2010","journal-title":"Comput. Electr. Eng."},{"key":"ref_35","first-page":"51","article-title":"Provably Secure Certificateless Strong Designated Verifier Signature Scheme Based on Elliptic Curve Bilinear Pairings","volume":"25","author":"Islam","year":"2013","journal-title":"J. King Saud Univ.-Comput. Inf. Sci."},{"key":"ref_36","doi-asserted-by":"crossref","first-page":"2895","DOI":"10.1016\/j.ins.2010.04.002","article-title":"A Pairing-Free Identity-Based Authenticated Key Agreement Protocol with Minimal Message Exchanges","volume":"180","author":"Cao","year":"2010","journal-title":"Inf. Sci."}],"container-title":["Symmetry"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/2073-8994\/11\/5\/605\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,11]],"date-time":"2025-10-11T12:48:28Z","timestamp":1760186908000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/2073-8994\/11\/5\/605"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019,5,1]]},"references-count":36,"journal-issue":{"issue":"5","published-online":{"date-parts":[[2019,5]]}},"alternative-id":["sym11050605"],"URL":"https:\/\/doi.org\/10.3390\/sym11050605","relation":{},"ISSN":["2073-8994"],"issn-type":[{"type":"electronic","value":"2073-8994"}],"subject":[],"published":{"date-parts":[[2019,5,1]]}}}