Folks, Does anyone know if there is a blind signature scheme that works with DSA or ECDSA? I know about Camenisch, Pivetau and Stadler's "Blind Signatures Based on the Discrete Logarithm Problem" (1994), but as far as I can tell that doesn't produce straight DSA-verifiable signatures and so is a lot less desirable than it might otherwise be.
Has there been any better work on this? Thanks, -Ekr --------------------------------------------------------------------- The Cryptography Mailing List Unsubscribe by sending "unsubscribe cryptography" to [EMAIL PROTECTED]
