Practical security against linear cryptanalysis for SMS4-like ciphers with SP round function

来源 :Science China(Information Sciences) | 被引量 : 0次 | 上传用户:liugang168
下载到本地 , 更方便阅读
声明 : 本文档内容版权归属内容提供方 , 如果您对本文有版权争议 , 可与客服联系进行内容授权或下架
论文部分内容阅读
SMS4,a block cipher whose global structure adopts a special unbalanced Feistel scheme with SP round function,is accepted as the Chinese National Standard for securing Wireless LANs.In this paper,in order to evaluate the security against linear cryptanalysis,we examine the upper bound of the maximum linear characteristic probability of SMS4-like ciphers with SP round function.In the same way as for SPN ciphers,it is sufficient to consider the lower bound of the number of linear active s-boxes.We propose a formula to compute the lower bound of the number of linear active s-boxes with regard to the number of rounds.The security threshold of SMS4-like ciphers can be estimated easily with our result.Furthermore,if the number of input words in each round of SMS4-like cipher is m,we find that it is unnecessary for designers to make the linear branch number of P greater than 2 m with respect to linear cryptanalysis. SMS4, a block cipher whose global structure adopts a special unbalanced Feistel scheme with SP round function, is accepted as the Chinese National Standard for secure Wireless LANs.In this paper, in order to evaluate the security against linear cryptanalysis, we examine the upper bound of the maximum linear characteristic probability of SMS4-like ciphers with SP round function. the same way as for SPN ciphers, it is sufficient to consider the lower bound of the number of linear active s-boxes. We propose a formula to compute the lower bound of the number of linear active s-boxes with regard to the number of rounds. The security threshold of SMS4-like ciphers can be estimated easily with our result.Furthermore, if the number of input words in each round of SMS4-like cipher is m, we find that it is unnecessary for designers to make the linear branch number of P greater than 2 m with respect to linear cryptanalysis.
其他文献
该文首先介绍了对智能交通系统(ITS)的认识,以及公交ITS系统应具备的基本功能;其次,通过对北京市公共交通现状的分析,提出了北京公交ITS系统的框架设计;并在此基础上论述了该系统的
农药中毒是指超过人体最大耐受量的农药的进入到人体后,对机体正常生理功能的发挥造成一定影响,造成生理失调,病变的发生.根据相关数据调查显示,全世界每年都有数百万人中毒,
期刊
女性到了更年期前后,生殖机能衰退最主要的是卵巢功能的衰退,随着卵巢功能的衰退,体内的激素水平也会随之慢慢下降,会发生更年期综合征,也称之为围绝经期综合征,继而出现停经
期刊
针对电信管理网TMN和公共对象请求代理体系结构CORBA的特点及功能,结合面向对象技术和分布式处理技术,提出一种基于CORBA的TMN平台的设想。
该文结合某发电厂1-2号机组经济运行微机网络系统的实际工程项目。针对其下位机实时数据监控系统,简要介绍了电荷平衡传输技术的原理,并详细阐述了该项技术在系统通讯中的应用,电荷
采用小规模分布式控制系统结构,研制了具有过程管理级和过程控制级的两级分布式油料灌装控制系统,介绍了系统的硬件配置、软件功能及分布式通讯的实现方法,该系统通过PLC技术、IC卡技
小儿疝气,又叫“小肠气”.小儿疝气的形成实际上就是儿童的肚子出现一个破洞,儿童的肠子从破洞中鼓出,从而形成一个鼓包[1].在电视上,广播中,我们常常听到很多治疗小儿疝气的
期刊
该文给出混合式服务方式下,多队列多信息排队系统内不同类对象的平均等待时间。文中首先介绍系统的服务方式,即对不同类对象分别采用门限式服务和限定式服务,给出不同类对象的等
随着人们生活水平的提高,妊娠期甲状腺功能减退症的发病率也随之升高,人们的母婴保健观念也逐渐加深,那么究竟什么是甲状腺功能减退症?此病症对母婴会造成哪些危害?又该如何
期刊
人体的脑膜包括硬脑膜、蛛网膜、软脑膜,脑膜炎是指因细菌、真菌、病毒、螺旋体、立克次体、肿瘤等各种致病因素引起的脑膜发生炎症性的改变,病变呈弥漫性,因软脑膜炎最为常
期刊