A signature based on private RSA cryptosystem exponentiation, with public exponentiation used for verification. Textbook is multiplicatively forgeable; a secure scheme requires an appropriate encoding and message digest rather than raw message exponentiation.
New to topics? Read the docs here!