欢迎访问中国科学院大学学报,今天是

中国科学院大学学报 ›› 2003, Vol. 20 ›› Issue (1): 31-38.DOI: 10.7523/j.issn.2095-6134.2003.1.005

• 论文 • 上一篇    下一篇

一类广义Feistel密码的线性分析

张如文   

  1. 中国科学院研究生院信息安全国家重点实验室, 北京 100039
  • 收稿日期:2002-04-02 修回日期:2002-06-14 发布日期:2003-01-18
  • 作者简介:E-mail:zrwsl@yahoo.com.cn
  • 基金资助:

    973项目(G1999035808);863项目(2001AA140101)资助

Linear Cryptanalysis for a Class of Generalized Feistel Ciphers

Zhang Ruwen   

  1. State Key Laboratory of Information Security, the Graduate School of Chinese Academy of Sciences, Beijing 100039, China
  • Received:2002-04-02 Revised:2002-06-14 Published:2003-01-18

摘要:

针对一类广义Feistel密码提出一种求取密码线性偏差上界的方法.该分析方法的思路是,首先对密码体制线性偏差进行严格的数学描述,分别给出密码线性偏差与轮函数F及S盒的线性偏差的数学关系;然后确定密码线性偏差的上界.利用该方法给出了32轮以内各轮的线性偏差上界.

关键词: 线性密码分析, 线性偏差表达式, 密码, S盒

Abstract:

Proposes a method for seeking the upper bounds of maximum linear bias for these ciphers. This technique consists of two steps. Firstly, we give the mathematical relationship between linear bias of ciphers and linear bias of round function F and S box respectively by carrying out strictly mathematical expression of linear bias for ciphers. Next we determine the upper bounds of linear bias for ciphers. Using this method we give the upper bounds of linear bias within 32 rounds.

Key words: linear cryptanalysis, linear bias expression, ciphers, S-box

中图分类号: