Communication publiée dans un ouvrage (Colloques, congrès, conférences scientifiques et actes)
Provable Security of (Tweakable) Block Ciphers Based on Substitution-Permutation Networks
COGLIATI, Benoît-Michel; Dodis, Yevgeniy; Katz, Jonathan et al.
2018In Provable Security of (Tweakable) Block Ciphers Based on Substitution-Permutation Networks
Peer reviewed
 

Documents


Texte intégral
spn-bbb.pdf
Postprint Auteur (655.73 kB)
Télécharger

© IACR 2018. This article is the final version submitted by the author(s) to the IACR and to Springer-Verlag on 2018-06-10. The version published by Springer-Verlag is available at 10.1007/978-3-319-96884-1\_24


Tous les documents dans ORBilu sont protégés par une licence d'utilisation.

Envoyer vers



Détails



Mots-clés :
substitution-permutation networks; tweakable block ciphers; domain extension of block ciphers; beyond-birthday-bound security
Résumé :
[en] Substitution-Permutation Networks (SPNs) refer to a family of constructions which build a wn-bit block cipher from n-bit public permutations (often called S-boxes), which alternate keyless and “local” substitution steps utilizing such S-boxes, with keyed and “global” permu- tation steps which are non-cryptographic. Many widely deployed block ciphers are constructed based on the SPNs, but there are essentially no provable-security results about SPNs. In this work, we initiate a comprehensive study of the provable security of SPNs as (possibly tweakable) wn-bit block ciphers, when the underlying n-bit permutation is modeled as a public random permutation. When the permutation step is linear (which is the case for most existing designs), we show that 3 SPN rounds are necessary and sufficient for security. On the other hand, even 1-round SPNs can be secure when non-linearity is allowed. Moreover, 2-round non-linear SPNs can achieve “beyond- birthday” (up to 2 2n/3 adversarial queries) security, and, as the number of non-linear rounds increases, our bounds are meaningful for the number of queries approaching 2 n . Finally, our non-linear SPNs can be made tweakable by incorporating the tweak into the permutation layer, and provide good multi-user security. As an application, our construction can turn two public n-bit permuta- tions (or fixed-key block ciphers) into a tweakable block cipher working on wn-bit inputs, 6n-bit key and an n-bit tweak (for any w ≥ 2); the tweakable block cipher provides security up to 2 2n/3 adversarial queries in the random permutation model, while only requiring w calls to each permutation, and 3w field multiplications for each wn-bit input.
Disciplines :
Sciences informatiques
Auteur, co-auteur :
COGLIATI, Benoît-Michel ;  University of Luxembourg > Faculty of Science, Technology and Communication (FSTC) > Computer Science and Communications Research Unit (CSC)
Dodis, Yevgeniy;  New York University, USA
Katz, Jonathan;  University of Maryland, USA
Lee, Jooyoung;  KAIST, Korea
Steinberger, John
Thiruvengadam, Aishwarya;  University of California, Santa Barbara
Zhang, Zhe;  Tsinghua University, Beijing
Co-auteurs externes :
yes
Langue du document :
Anglais
Titre :
Provable Security of (Tweakable) Block Ciphers Based on Substitution-Permutation Networks
Date de publication/diffusion :
2018
Nom de la manifestation :
CRYPTO 2018
Date de la manifestation :
August 19-23, 2018
Titre de l'ouvrage principal :
Provable Security of (Tweakable) Block Ciphers Based on Substitution-Permutation Networks
Peer reviewed :
Peer reviewed
Focus Area :
Security, Reliability and Trust
Projet européen :
H2020 - 644209 - HEAT - Homomorphic Encryption Applications and Technology
Organisme subsidiant :
CE - Commission Européenne
Disponible sur ORBilu :
depuis le 29 janvier 2020

Statistiques


Nombre de vues
137 (dont 0 Unilu)
Nombre de téléchargements
271 (dont 1 Unilu)

citations Scopus®
 
20
citations Scopus®
sans auto-citations
18
OpenCitations
 
12
citations OpenAlex
 
28
citations WoS
 
23

Bibliographie


Publications similaires



Contacter ORBilu