中国科学院软件研究所机构知识库
Advanced  
ISCAS OpenIR  > 软件所图书馆  > 期刊论文
Title:
两类广义Feistel结构的零和区分器构造
Alternative Title: Constructing Zero-Sum Distinguishers of Two Generalized Feistel Structures
Author: 董乐 ; 吴文玲 ; 李艳俊 ; 邹剑 ; 杜蛟
Keyword: type-2广义Feistel结构 ; type-3广义Feistel结构 ; 高阶积分 ; 零和区分器
Source: 密码学报
Issued Date: 2015
Volume: 2, Issue:5, Pages:439-448
Indexed Type: CSCD
Department: 董乐, 河南师范大学, 大数据统计分析与优化控制河南省工程实验室;;河南省高校数学与科学计算重点学科开放实验室, 新乡, 河南 453007, 中国;杜蛟, 河南师范大学, 大数据统计分析与优化控制河南省工程实验室;;河南省高校数学与科学计算重点学科开放实验室, 新乡, 河南 453007, 中国;吴文玲, 中国科学院软件研究所可信计算与信息保障实验室, 北京 100190, 中国;李艳俊, 北京电子科技学院, 北京 100070, 中国;邹剑, 福州大学数学与计算机科学学院, 福州, 福建 350116, 中国;
Abstract: 由于Feistel结构具有良好的密码学性质, 它的变体许多广义Feistel结构也成为密码算法设计者乐于选择的对象, 其中由郑玉良等人设计的type-2和type-3广义Feistel结构被许多分组密码算法和密码杂凑函数所采用. 所以, 对这两种广义Feistel结构进行安全性分析非常必要. 伪随机性是一个结构的重要安全性指标, 而自2007年Knudsen和Rijmen提出了已知密钥区分器开始, 利用构造已知密钥区分器来分析算法与结构的伪随机性逐步成为人们常用的手段. 本文对type-2和type-3广义Feistel结构的积分性质进行深层挖掘, 同时利用高阶积分性质与积分传播性质, 将高阶积分路径与单活跃字起始的积分路径串联, 分别构造这两种结构的中间起始积分区分器, 即零和区分器. 我们以2~(3N/4)的复杂度得到了type-2广义Feistel结构的15轮零和区分器, 其中正向部分包含8轮, 逆向部分包含7轮; 并以同样的复杂度得到了type-3广义Feistel结构的10轮零和区分器, 其中正向部分包含6轮, 逆向部分包含4轮, 这里N表示状态的大小. 此外, 我们还得到了一些低复杂度的结果, 分别以2~(N/2)和2~(N/4)的复杂度得到了type-2广义Feistel结构的13轮和11轮零和区分器.
English Abstract: On account of attractive properties of the Feistel structure, as its variants, many generalized Feistel structures were selected by the designers of cryptographic algorithms. The type-2 and type-3 generalized Feistel structures, designed by Zheng et al., have been used in many block ciphers and hash functions. Therefore, it is necessary to analyze the security of the two structures. Pseudo-randomness is an important security measure, and it has been a more and more common method to analyze the pseudo-randomness of an algorithm and a structure by constructing a known-key distinguisher, after Knudsen and Rijmen presented this concept in 2007. In this paper, we deeply exploit the integral properties of the type-2 and type-3 generalized Feistel structures, and use the properties of higher-order integral and integral propagation to connect a higher-order integral path with a general integral path whose starting state has one active word and build middle-text integral distinguishers for the two structures, namely the zero-sum distinguishers. We get a 15-round zero-sum distinguisher for the type-2 generalized Feistel structure with a complexity of 2~(3N/4), which has 8 rounds in forward and 7 rounds in backward, where N denotes the size of the state. We also get a 10-round zero-sum distinguisher for the type-3 generalized Feistel structure with the same complexity, which has 6 rounds in forward and 4 rounds in backward. In addition, we also get some results with lower complexities, such as the 13-round and the 11-round zero-sum distinguishers for the type-2 generalized Feistel structure with complexities of 2~(N/2) and 2~(N/4), respectively.
Language: 中文
Citation statistics:
Content Type: 期刊论文
URI: http://ir.iscas.ac.cn/handle/311060/17401
Appears in Collections:软件所图书馆_期刊论文

Files in This Item:
File Name/ File Size Content Type Version Access License
两类广义Feistel结构的零和区分器构造.pdf(1141KB)----限制开放 联系获取全文

Recommended Citation:
董乐,吴文玲,李艳俊,等. 两类广义Feistel结构的零和区分器构造[J]. 密码学报,2015-01-01,2(5):439-448.
Service
Recommend this item
Sava as my favorate item
Show this item's statistics
Export Endnote File
Google Scholar
Similar articles in Google Scholar
[董乐]'s Articles
[吴文玲]'s Articles
[李艳俊]'s Articles
CSDL cross search
Similar articles in CSDL Cross Search
[董乐]‘s Articles
[吴文玲]‘s Articles
[李艳俊]‘s Articles
Related Copyright Policies
Null
Social Bookmarking
Add to CiteULike Add to Connotea Add to Del.icio.us Add to Digg Add to Reddit
所有评论 (0)
暂无评论
 
评注功能仅针对注册用户开放,请您登录
您对该条目有什么异议,请填写以下表单,管理员会尽快联系您。
内 容:
Email:  *
单位:
验证码:   刷新
您在IR的使用过程中有什么好的想法或者建议可以反馈给我们。
标 题:
 *
内 容:
Email:  *
验证码:   刷新

Items in IR are protected by copyright, with all rights reserved, unless otherwise indicated.

 

 

Valid XHTML 1.0!
Copyright © 2007-2019  中国科学院软件研究所 - Feedback
Powered by CSpace