RT Journal Article T1 Combined schemes for signature and encryption: The public-key and the identity-based setting A1 González Vasco, María Isabel A1 Hess, Florian A1 Steinwandt, Rainer AB Consider a scenario in which parties use a public-key encryption scheme and a signature scheme with a single public key/private key pair-so the private key sk is used for both signing and decrypting. Such a simultaneous use of a key is in general considered poor cryptographic practice, but from an efficiency point of view looks attractive. We offer security notions to analyze such violations of key separation. For both the identity-and the non-identity-based setting, we show that-although being insecure in general-for schemes of interest the resulting combined scheme can offer strong security guarantees. PB Elsevier SN 0890-5401 YR 2016 FD 2016-04 LK https://hdl.handle.net/10016/37412 UL https://hdl.handle.net/10016/37412 LA eng NO First and last author were supported by the Spanish Ministerio de Economía y Competitividad through the project grant MTM-2012-15167. DS e-Archivo RD 27 jul. 2024