欢迎访问中国科学院大学学报,今天是
简报

SAFER系列密码算法的设计与分析

  • 张文涛 ,
  • 吴文玲 ,
  • 卿斯汉
展开
  • 中国科学院软件研究所, 中国科学院信息安全技术工程研究中心, 北京 100080
张文涛, 女, 1977 年12 月生, 博士生

收稿日期: 2001-11-12

  修回日期: 2002-01-14

  网络出版日期: 2002-07-18

基金资助

国家自然科学基金资助(60103023,60083007);国家重点基础研究发展规划资助(G1999035810)

Design and Analysis of SAFER Block Cipher

  • ZHANG Wen Tao ,
  • WU Wen Ling ,
  • QING Si Han
Expand
  • Institute of Software, Chinese Academy of Sciences, Engineeering Research Center for Information Security Technology, Chinese Academy of Sciences, Beijing 100080

Received date: 2001-11-12

  Revised date: 2002-01-14

  Online published: 2002-07-18

摘要

SAFER系列密码算法的总体结构采用SP 网络,它的设计具有其独到的几个特色。分析SAFER系列密码算法的设计思想,沿着设计者对它们不断改进的思路,分别描述其混淆层、扩散层、密钥扩展算法的性质和对它们的攻击。最后提出几个尚需进一步考虑的问题

本文引用格式

张文涛 , 吴文玲 , 卿斯汉 . SAFER系列密码算法的设计与分析[J]. 中国科学院大学学报, 2002 , 19(4) : 415 -421 . DOI: 10.7523/j.issn.2095-6134.2002.4.013

Abstract

The general structure of SAFER block ciphers adopts SP-network.It's desig n has some original features.In this paper, the design technique of SAFER block cipher is analyzed.Along the process of improvement of it's designers, we give a description of and attack on their confusion layer, diffusion layer and key schedule algo rithm.In the end, some problems about SAFER design are proposed, and will be studied later.

参考文献

[1] J L Massey.SAFERK-64:A Byte-oriented Block-ciphering Algorithm. Fast Software Encryption.Proc Cambridge Security Work shop,Camb ridge, U K, LNCS 809.S pringer Verlag, 1994.1 ~ 17

[2] J L Massey, G H Khachat rian, M K Kuregian.Nomination of SAFER+ as Candidate Algorithm for the Advanced Encryption St andard(AES).http ://w w w.ni st.gov/aes

[3] J L Massey, G H Khachatrian, M K Kuregian.Nomination of SAFER++ as Candidate Algorithm for the New European Schemes for Signatures, Integrity, and Encryption (NESS IE).http://

[4] J L Massey.SAFERK-64 :One Year Later.Fast Software Encryption II, LNCS 1008.New York :Springer, 1995

[5] J L Massey.On the optimali ty of SAFER+Diffusion.http://www.nist.gov/a es

[6] L R Knudsen.A Key-S chedule Weakness in SAFER K-64.Advances in Cryptography-C RYPTO'95, LNCS 962, S pringer 1995

[7] J Kelsey, B Schneier, D Wagner.Key Schedule Weaknesses in SAFE R++.http ://ww w.nist.gov/aes

[8] Charles S Williams.Proposal for a "Tweak"to Cylink's AES Candidate Algorithm SAFER+.ht tp ://www.nist.gov/aes

[9] J Daemen.Cipher and Hash Function Design Strategies Based on Linear and Differential Cryptanalysis.K U Leuven.Doctoral Dissertation.1995

文章导航

/