...
【24h】

Secure and fast elliptic scalar multiplication based on wNAF

机译:基于WNAF的安全和快速椭圆标量乘法

获取原文
获取原文并翻译 | 示例
           

摘要

The side channel attack (SCA) is a serious attack on wearable devices that have scarce computational resources. Cryptographic algorithms on them should be efficient using small memory - we have to make efforts to optimize the trade-off between efficiency and memory. In this paper we present efficient SCA-resistant scalar multiplications based on window method. Moller proposed an SPA-resistant window method based on 2{sup}w-ary window method, which replaces w-consecutive zeros to 1 plus w-consecutive 1{top}- and it requires 2{sup}w points of table (or 2{sup}(w-1) + 1 points if the signed 2{sup}w-ary is used). The most efficient window method with small memory is the width-w NAF, which requires 2{sup}(w-2) points of table. In this paper we convert the width-w NAF to an SPA-resistant addition chain. Indeed we generate a scalar sequence with the fixed pattern, e.g. |0..0x|0..0x|0..0x| where x is positive odd points < 2{sup}w. Thus the size of the table is 2{sup}(w-1), which is optimal in the construction of the SPA-resistant chain based on width-w NAF. The table sizes of the proposed scheme are 6% to 50% smaller than those of Moller's scheme for w = 2,3,4, 5, which are relevant choices in the sense of efficiency for 160-bit ECC.
机译:侧频攻击(SCA)是对具有稀缺计算资源的可穿戴设备的严重攻击。它们上的加密算法应该使用小记忆有效 - 我们必须努力优化效率和内存之间的权衡。本文基于窗口方法呈现出高效的SCA耐标量乘法。 Moller提出了一种基于2 {SUP} W-ARY窗口方法的SPA抗性窗口方法,其将W-连续的零点替换为1加上W-连续1 {TOP} - 它需要2 {SUP} W点(或如果使用符号2 {sup} w-ary,则2 {sup}(w-1)+ 1点)。具有小存储器的最有效的窗口方法是宽度-W NAF,其需要2 {SUP}(W-2)表。在本文中,我们将宽度-w naf转换为水疗添加链。事实上,我们使用固定模式生成标量序列,例如, | 0..0x | 0..0x | 0..0x |其中x是正奇数点<2 {sup} w。因此,表的尺寸是2 {sup}(w-1),其基于宽度-w naf的Spa抗链条的结构是最佳的。拟议方案的表尺寸比Moller方案的6%〜50%,对于W = 2,3,4,5,这是在160位ECC的效率感的相关选择。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号