中国矿业大学:密码学_Block ciphers-AES(Advanced Encryption Standard)

Block ciphers-AES Advanced Encryption Standard 曹天杰 Tianjie Cao ticao(cumt. edu. cn College of Computer science and echnology, China University of Mining and Technology Xuzhou, China 中国矿业大学计算机科学与技术学院 2003.523
1 曹天杰 Tianjie Cao tjcao@cumt.edu.cn College of Computer Science and Technology, China University of Mining and Technology, Xuzhou, China 中国矿业大学计算机科学与技术学院 2003.5.23 Block ciphers-AES Advanced Encryption Standard

Origins of aes Security Software H ardware Efliciency Efficiency Flexibility 2
2 Security Software Efficiency Hardware Efficiency Flexibility Origins of AES

Flexibility Additional key-sizes and block-sizes ability to function efficiently and securely in a wide variety of platforms and applications low-end smartcards wireless: small memory requirements IPSec, ATM- small key setup time in hardware B-ISDN, satellite communication-large encryption speed
3 • Additional key-sizes and block-sizes • Ability to function efficiently and securely in a wide variety of platforms and applications low-end smartcards, wireless: small memory requirements IPSec, ATM – small key setup time in hardware B-ISDN, satellite communication – large encryption speed Flexibility

Aes Contest 1997-2001 June 1998 15 Candidates Round 1 from USA, Canada, belgium, Security france, Germany, Norway, UK, Israel Software efficiency Korea, Japan, Australia, Costa rica Flexibility August 1999 Round 2 5 final candidates Security Mars, RC6, Rijndael, Serpent, T WOIIS Hardware efficiency October 2000 I winner: Rijndael Belgium
4 15 Candidates from USA, Canada, Belgium, France, Germany, Norway, UK, Israel, Korea, Japan, Australia, Costa Rica June 1998 August 1999 October 2000 1 winner: Rijndael Belgium 5 final candidates Mars, RC6, Rijndael, Serpent, Twofish Round 1 Round 2 Security Software efficiency Flexibility Security Hardware efficiency AES Contest 1997-2001

AEs In 1999. nist issued a new standard that said 3DES Should be used 168-bit key length Algorithm is the same as des 3DES had drawbacks Algorithm is sluggish in software Only uses 64-bit block size In 1997. Nist issued a calls for proposals for the new Advanced Encryption Standard(aEs) security strength >= 3DES improved efficiency must be a symmetric block cipher(128-bit ey lengths of 128. 192 and 256 bits
5 AES • In 1999, NIST issued a new standard that said 3DES should be used – 168-bit key length – Algorithm is the same as DES • 3DES had drawbacks – Algorithm is sluggish in software – Only uses 64-bit block size • In 1997, NIST issued a calls for proposals for the new Advanced Encryption Standard (AES) – security strength >= 3DES – improved efficiency – must be a symmetric block cipher (128-bit) – key lengths of 128, 192, and 256 bits

AES Evaluation Criteria used by nist to evaluate potential candidates Initial criteria Security Cost Algorithm characteristics Final criteria General Security Hardware Implementations Software Implementations Attacks on Implementations .Restricted-space environments Encryption vs. Decryption Flexibility ● Key agility
6 AES Evaluation • Criteria used by NIST to evaluate potential candidates – Initial Criteria: • Security • Cost • Algorithm characteristics – Final Criteria: •General Security •Software Implementations •Restricted-space environments •Flexibility •Hardware Implementations •Attacks on Implementations •Encryption vs. Decryption •Key agility

Europe NESSIE Project New European Schemes for Signatures, Integrity, and Encryption 2000-2002 Japan CRYPTREC Project 2000-2002
7 NESSIE Project New European Schemes for Signatures, Integrity, and Encryption 2000-2002 CRYPTREC Project 2000-2002 Europe Japan

NESSIE. CRYPTREC Multiple types of transformations: Symmetric-key block ciphers · Stream ciphers · Hash functions ·MACs Asymmetric encryption schemes Asymmetric digital signature schemes Asymmetric identification schemes Development of methodology of a fair evaluation and comparison of algorithms belonging to the same class, including software and hardware efficiency
8 Multiple types of transformations: Development of methodology of a fair evaluation and comparison of algorithms belonging to the same class, including software and hardware efficiency • Symmetric-key block ciphers • Stream ciphers • Hash functions • MACs • Asymmetric encryption schemes • Asymmetric digital signature schemes • Asymmetric identification schemes NESSIE, CRYPTREC

Survey filled by 167 participants of the Third AES Conference, April 2000 f votes 100 90 80 70 60 50 40 30 20 Rijndael Serpent Twofish RC6 Mars
0 9 10 20 30 40 50 60 70 80 90 100 Rijndael Serpent Twofish RC6 Mars Survey filled by 167 participants of the Third AES Conference, April 2000 # votes

Speed of the final aES candidates in hardware Speed Mbit/s] K Gaj, P. Chodowiec, AES3, April, 2000 500 450 400 350 300 250 200 150 100 50 Serpent Rijndael Twofish RC6 Mars
10 0 50 100 150 200 250 300 350 400 450 500 Serpent Rijndael Twofish RC6 Mars Speed of the final AES candidates in hardware Speed [Mbit/s] K.Gaj, P. Chodowiec, AES3, April, 2000
按次数下载不扣除下载券;
注册用户24小时内重复下载只扣除一次;
顺序:VIP每日次数-->可用次数-->下载券;
- 中国矿业大学:密码学_authentication protocol.ppt
- 湖北工业大学:《数据结构》第9章 排序(2/2).ppt
- 湖北工业大学:《数据结构》第9章 排序(1/2).ppt
- 湖北工业大学:《数据结构》第8章 图(2/2).ppt
- 湖北工业大学:《数据结构》第8章 图(1/2).ppt
- 湖北工业大学:《数据结构》第7章 树和二叉树(Tree & Binary Tree)(5/5).ppt
- 湖北工业大学:《数据结构》第7章 树和二叉树(Tree & Binary Tree)(4/5).ppt
- 湖北工业大学:《数据结构》第7章 树和二叉树(Tree & Binary Tree)(3/5).ppt
- 湖北工业大学:《数据结构》第7章 树和二叉树(Tree & Binary Tree)(2/5).ppt
- 湖北工业大学:《数据结构》第7章 树和二叉树(Tree & Binary Tree)(1/5).ppt
- 湖北工业大学:《数据结构》第6章 递归.ppt
- 湖北工业大学:《数据结构》第5章 数组.ppt
- 湖北工业大学:《数据结构》第4章 串(String)(2/2).ppt
- 湖北工业大学:《数据结构》第4章 串(String)(1/2).ppt
- 湖北工业大学:《数据结构》第3章 堆栈和队列(3/3).ppt
- 湖北工业大学:《数据结构》第3章 堆栈和队列(2/3).ppt
- 湖北工业大学:《数据结构》第3章 堆栈和队列(1/3).ppt
- 湖北工业大学:《数据结构》第2章 线性表(4/4).ppt
- 湖北工业大学:《数据结构》第2章 线性表(3/4).ppt
- 湖北工业大学:《数据结构》第2章 线性表(2/4).ppt
- 中国矿业大学:密码学_Block ciphers-DES(DATA ENCRYPTION STANDARD).ppt
- 中国矿业大学:密码学_Block ciphers-L&D(Linear and Differential Cryptanalysis).ppt
- 中国矿业大学:密码学_CRYPTO12(Number Theory).ppt
- 中国矿业大学:密码学_Digital Signature.ppt
- 中国矿业大学:密码学_Hash Functions.ppt
- 中国矿业大学:密码学_LECTURE3.ppt
- 中国矿业大学:密码学_NTHEORY2(Group Theory and Number Theory for Cryptology).ppt
- 中国矿业大学:密码学_Outline.ppt
- 中国矿业大学:《密码学》PPT教学课件(曹天杰).ppt
- 中国矿业大学:密码学_Public Key Cryptography.ppt
- 中国矿业大学:密码学_Public Key Cryptography.ppt
- 中国矿业大学:密码学_security protocols.ppt
- 《LaTeX2e1》参考书籍PDF电子版:附录A书信的编辑.pdf
- 《LaTeX2e1》参考书籍PDF电子版:附录B参数文献数据库的处理.pdf
- 《LaTeX2e1》参考书籍PDF电子版:附录CTX程序设计.pdf
- 《LaTeX2e1》参考书籍PDF电子版:附录D扩展X.pdf
- 《LaTeX2e1》参考书籍PDF电子版:附录E 计算机现代字体.pdf
- 《LaTeX2e1》参考书籍PDF电子版:第一章 简介.pdf
- 《LaTeX2e1》参考书籍PDF电子版:第二章 命令与环境.pdf
- 《LaTeX2e1》参考书籍PDF电子版:第三章 文档的布局与组织.pdf