欢迎来到天天文库
浏览记录
ID:21617570
大小:1.09 MB
页数:32页
时间:2018-10-17
《分组密码的工作模式》由会员上传分享,免费在线阅读,更多相关内容在教育资源-天天文库。
1、第6章分组密码的工作模式MultipleEncryption&3DESclearareplacementforDESwasneededtheoreticalattacksthatcanbreakitdemonstratedexhaustivekeysearchattacksAESisanewcipheralternativepriortothisalternativewastousemultipleencryptionwithDESimplementationsTripleDES(3DES)isthe
2、chosenformWhynotDouble-DES?coulduse2DESencryptsoneachblockC=E(K2,E(K1,P))P=D(K1,D(K2,C))issueofreductiontosinglestage(约化为单次加密),andhave“meet-in-the-middle”attackworkswheneveruseaciphertwicesinceX=E(K1,P)=D(K2,C),attackbyencryptingPwithallkeysandstore,the
3、ndecryptCwithkeysandmatchXvaluecanshowtakesO(256)stepsRequireknow…Triple-DESwithTwo-Keyshencemustuse3encryptionswouldseemtoneed3distinctkeysbutcanuse2keyswithE-D-EsequenceC=EK1(DK2(EK1(P)))nbencrypt&decryptequivalentinsecurityifK1=K2thencanworkwithsingl
4、eDESstandardizedinANSIX9.17&ISO8732nocurrentknownpracticalattacksO(2112)穷举攻击/1052差分密码分析Triple-DESwithThree-Keysalthougharenopracticalattacksontwo-keyTriple-DEShavesomeindicationscanuseTriple-DESwithThree-KeystoavoideventheseC=EK3(DK2(EK1(P)))hasbeenadop
5、tedbysomeInternetapplications,egPGP,S/MIMEModesofOperationblockciphersencryptfixedsizeblockseg.DESencrypts64-bitblockswith56-bitkeyneedsomewaytoen/decryptarbitraryamountsofdatainpractiseNIST(SP800-38A)ModesofUsedefines5possiblemodesdefinedforAES&DEShave
6、blockandstreammodestocoverawidevarietyofapplicationscanbeusedwithanyblockcipherElectronicCodebookBook(ECB)messageisbrokenintoindependentblockswhichareencryptedeachblockisavaluewhichissubstituted,likeacodebook,hencenameeachblockisencodedindependentlyofth
7、eotherblocksCi=DESK1(Pi)uses:securetransmissionofsinglevaluesElectronicCodebookBook(ECB)AdvantagesandLimitationsofECBmessagerepetitionsmayshowinciphertextifalignedwithmessageblockparticularlywithdatasuchgraphicsorwithmessagesthatchangeverylittle,whichbe
8、comeacode-bookanalysisproblemweaknessisduetotheencryptedmessageblocksbeingindependentmainuseissendingafewblocksofdataCipherBlockChaining(CBC)messageisbrokenintoblockslinkedtogetherinencryptionoperationeachpreviouscipherblocksisch
此文档下载收益归作者所有