收稿日期: 2001-11-12
修回日期: 2002-01-14
网络出版日期: 2002-07-18
基金资助
国家自然科学基金资助(60103023,60083007);国家重点基础研究发展规划资助(G1999035810)
Design and Analysis of SAFER Block Cipher
Received date: 2001-11-12
Revised date: 2002-01-14
Online published: 2002-07-18
张文涛 , 吴文玲 , 卿斯汉 . SAFER系列密码算法的设计与分析[J]. 中国科学院大学学报, 2002 , 19(4) : 415 -421 . DOI: 10.7523/j.issn.2095-6134.2002.4.013
The general structure of SAFER block ciphers adopts SP-network.It's desig n has some original features.In this paper, the design technique of SAFER block cipher is analyzed.Along the process of improvement of it's designers, we give a description of and attack on their confusion layer, diffusion layer and key schedule algo rithm.In the end, some problems about SAFER design are proposed, and will be studied later.
Key words: block cipher; SAFER; confusion layer; diffusion layer; key schedule
[1] J L Massey.SAFERK-64:A Byte-oriented Block-ciphering Algorithm. Fast Software Encryption.Proc Cambridge Security Work shop,Camb ridge, U K, LNCS 809.S pringer Verlag, 1994.1 ~ 17
[2] J L Massey, G H Khachat rian, M K Kuregian.Nomination of SAFER+ as Candidate Algorithm for the Advanced Encryption St andard(AES).http ://w w w.ni st.gov/aes
[3] J L Massey, G H Khachatrian, M K Kuregian.Nomination of SAFER++ as Candidate Algorithm for the New European Schemes for Signatures, Integrity, and Encryption (NESS IE).http://
[4] J L Massey.SAFERK-64 :One Year Later.Fast Software Encryption II, LNCS 1008.New York :Springer, 1995
[5] J L Massey.On the optimali ty of SAFER+Diffusion.http://www.nist.gov/a es
[6] L R Knudsen.A Key-S chedule Weakness in SAFER K-64.Advances in Cryptography-C RYPTO'95, LNCS 962, S pringer 1995
[7] J Kelsey, B Schneier, D Wagner.Key Schedule Weaknesses in SAFE R++.http ://ww w.nist.gov/aes
[8] Charles S Williams.Proposal for a "Tweak"to Cylink's AES Candidate Algorithm SAFER+.ht tp ://www.nist.gov/aes
[9] J Daemen.Cipher and Hash Function Design Strategies Based on Linear and Differential Cryptanalysis.K U Leuven.Doctoral Dissertation.1995
/
| 〈 |
|
〉 |