欢迎访问中国科学院大学学报,今天是
论文

一类广义Feistel密码的线性分析

  • 张如文
展开
  • 中国科学院研究生院信息安全国家重点实验室, 北京 100039
E-mail:zrwsl@yahoo.com.cn

收稿日期: 2002-04-02

  修回日期: 2002-06-14

  网络出版日期: 2003-01-18

基金资助

973项目(G1999035808);863项目(2001AA140101)资助

Linear Cryptanalysis for a Class of Generalized Feistel Ciphers

  • Zhang Ruwen
Expand
  • State Key Laboratory of Information Security, the Graduate School of Chinese Academy of Sciences, Beijing 100039, China

Received date: 2002-04-02

  Revised date: 2002-06-14

  Online published: 2003-01-18

摘要

针对一类广义Feistel密码提出一种求取密码线性偏差上界的方法.该分析方法的思路是,首先对密码体制线性偏差进行严格的数学描述,分别给出密码线性偏差与轮函数F及S盒的线性偏差的数学关系;然后确定密码线性偏差的上界.利用该方法给出了32轮以内各轮的线性偏差上界.

本文引用格式

张如文 . 一类广义Feistel密码的线性分析[J]. 中国科学院大学学报, 2003 , 20(1) : 31 -38 . DOI: 10.7523/j.issn.2095-6134.2003.1.005

Abstract

Proposes a method for seeking the upper bounds of maximum linear bias for these ciphers. This technique consists of two steps. Firstly, we give the mathematical relationship between linear bias of ciphers and linear bias of round function F and S box respectively by carrying out strictly mathematical expression of linear bias for ciphers. Next we determine the upper bounds of linear bias for ciphers. Using this method we give the upper bounds of linear bias within 32 rounds.

参考文献

[1] 吴文玲,贺也平.一类广义Feistel密码的安全性评估.电子与信息学报,2002,24(9):1177~1184

[2] C Adams. CAST-256. http://nist.gov/aes

[3] M Matsui. Linear cryptanalysis method for DES ciper. In:Advances in Cryptology-Eurocrypt'93, LNCS 765. Springer-Verlag,1993. 386~397

文章导航

/