首页> 外文会议>Advances in cryptology - CRYPTO 2011 >The Collision Security of Tandem-DM in the Ideal Cipher Model
【24h】

The Collision Security of Tandem-DM in the Ideal Cipher Model

机译:理想密码模型中串联DM的碰撞安全性

获取原文
获取原文并翻译 | 示例

摘要

We prove that Tandem-DM, which is one of the two "classical" schemes for turning a blockcipher of 2n-bit key into a double block length hash function, has birthday-type collision resistance in the ideal cipher model. A collision resistance analysis for Tandem-DM achieving a similar birthday-type bound was already proposed by Fleischmann, Gorski and Lucks at FSE 2009 [3]. As we detail, however, the latter analysis is wrong, thus leaving the collision resistance of Tandem-DM as an open problem until now. Our analysis exhibits a novel feature in that we introduce a trick not used before in ideal cipher proofs.
机译:我们证明Tandem-DM是将2n位密钥的分组密码转换为双块长度哈希函数的两个“经典”方案之一,在理想的密码模型中具有生日型的抗冲突性。 Fleischmann,Gorski和Lucks在FSE 2009上已经提出了针对Tandem-DM实现类似生日类型约束的抗碰撞分析[3]。然而,正如我们所详述的那样,后一种分析是错误的,因此直到现在,Tandem-DM的抗碰撞性仍是一个悬而未决的问题。我们的分析展现了一个新颖的功能,即我们引入了理想密码证明中从未使用过的技巧。

著录项

  • 来源
    《Advances in cryptology - CRYPTO 2011》|2011年|p.561-577|共17页
  • 会议地点 Santa Barbara CA(US);Santa Barbara CA(US)
  • 作者单位

    Faculty of Mathematics and Statistics, Sejong University, Seoul, Korea;

    Department of Computer Science, University of Bristol, Bristol, United Kingdom;

    Institute of Theoretical Computer Science, Tsinghua University, Beijing, China;

  • 会议组织
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类 安全保密;
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号