## Short signatures from the Weil pairing (2001)

by
Dan Boneh
,
Ben Lynn
,
Hovav Shacham

### Abstract

Abstract. We introduce a short signature scheme based on the Computational Diffie-Hellman assumption on certain elliptic and hyper-elliptic curves. The signature length is half the size of a DSA signature for a similar level of security. Our short signature scheme is designed for systems where signatures are typed in by a human or signatures are sent over a low-bandwidth channel. 1