首页> 外文会议>International Conference on Information and Communications Security >The Influence of LWE/RLWE Parameters on the Stochastic Dependence of Decryption Failures
【24h】

The Influence of LWE/RLWE Parameters on the Stochastic Dependence of Decryption Failures

机译:LWE / RLWE参数对解密失败随机依赖性的影响

获取原文

摘要

Learning with Errors (LWE) and Ring-LWE (RLWE) problems allow the construction of efficient key exchange and public-key encryption schemes. However, while improving the security through the use of error distributions with large standard deviations, the decryption failure rate increases as well. Currently, the independence of individual coefficient faiiures is assumed to estimate the overall decryption failure rate of many LWE/RLWE schemes. However, previous work has shown that this assumption is not correct. This assumption leads to wrong estimates of the decryption failure probability and consequently of the security level of the LWE/RLWE cryptosystem. An exploration of the influence of the LWE/RLWE parameters on the stochastic dependence among the coefficients is stiff missing. In this paper, we propose a method to analyze the stochastic dependence between decryption failures in LWE/RLWE cryptosystems. We present two main contributions. First, we use statistical methods to analyze the influence of fixing the norm of the error distribution on the stochastic dependence among decryption failures. The results have shown that fixing the norm of the error distribution indeed reduces the stochastic dependence of decryption failures. Therefore, the independence assumption gives a very close approximation to the true behavior of the cryptosystem. Second, we analyze and explore the influence of the LWE/RLWE parameters on the stochastic dependence. This exploration gives designers of LWE/RLWE based schemes the opportunity to compare different schemes with respect to the inaccuracy made by using the independence assumption. This work shows that the stochastic dependence depends on three LWE/RLWE parameters in different ways: i) it increases with higher lattice dimensions (n) and higher standard deviations of the error distribution (√k/2); and ii) it decreases with higher modulus (q).
机译:使用错误(LWE)和Ring-LWE(RLWE)问题允许建造有效的关键交换和公钥加密方案。但是,在通过使用具有大标准偏差的错误分布来提高安全性的同时,解密失败率也增加。目前,假设单个系数faiiies的独立性估计许多LWE / RLWE方案的整体解密失败率。但是,以前的工作表明,这个假设不正确。此假设导致解密失败概率的错误估计,因此是LWE / RLWE密码系统的安全级别。 LWE / RLWE参数对系数之间随机依赖性的影响的探讨是僵硬的缺失。在本文中,我们提出了一种方法来分析LWE / RLWE密码系统中解密失败之间的随机依赖性。我们提出了两个主要贡献。首先,我们使用统计方法来分析修复解密失败之间随机依赖性的误差分布规范的影响。结果表明,固定错误分布的规范确实降低了解密失败的随机依赖性。因此,独立假设给出了密码系统的真实行为非常近似。其次,我们分析并探索LWE / RLWE参数对随机依赖的影响。此探索为LWE / RLWE的方案提供了设计人员有机会比较通过使用独立假设的不准确性的不同方案。这项工作表明,随机依赖性以不同方式取决于三个LWE / RLWE参数:i)它随着较高的晶格尺寸(n)和误差分布的更高标准偏差(√k/ 2)增加;并且II)随着更高的模数(Q)而降低。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号