This paper explores practical and conceptual implications of using Server-Aided Signatures (SAS). SAS is a signature method that relies on partiallytrusted servers for generating public key signatures for regular users. Besides its two primary goals of 1) aiding small, resource-limited devices in computing heavy-weight (normally expensive) digital signatures and 2) fast certificate revocation, SAS also o#ers signature causality and has some interesting features such as built-in attack detection for users and DoS resistance for servers.


Proceedings on Network and Distributed System Security Symposium, San Diego, California, 2002 February 6-8


Internet Society

San Diego, CA

This work is licensed under a Creative Commons Attribution-Noncommercial-No Derivative Works 4.0 License.

