On A2-codes including arbiter's attacks
We comment on the work by R. Taylor presented at Euro-Crypt'94 (see this proceedings). We first extend some known results on authentication codes with arbitration to the case when protection against arbiter's attacks is provided. We give lower bounds on the secret key size for each participant and give a construction showing that these bounds are tight. These results improve upon previously known
