引用本文:黄艳,张方国.椭圆曲线同源的有效计算研究进展.软件学报,2021,32(4):1151-1164
【打印本页】   【下载PDF全文】   查看/发表评论  【EndNote】   【RefMan】   【BibTex】
←前一篇|后一篇→ 过刊浏览    高级检索
本文已被:浏览 3562次   下载 9082 本文二维码信息
码上扫一扫!
分享到: 微信 更多
椭圆曲线同源的有效计算研究进展
黄艳1,2, 张方国1,2
1.中山大学 计算机学院, 广东 广州 510006;2.广东省信息安全技术重点实验室, 广东 广州 510006
摘要:
由于Shor算法可以在多项式时间内解决大整数分解以及离散对数问题,使得基于这些问题设计的经典的密码体制不再安全.目前涌现出许多后量子密码体制的研究,如基于格、基于编码、基于多变量和基于椭圆曲线同源的密码系统.相比于其他后量子密码体制,基于椭圆曲线同源的密码系统具有密钥尺寸短的优势,然而其实现效率不占优势.以两类基于超奇异椭圆曲线同源的密钥交换协议为基准,根据经典的椭圆曲线标量乘和双线性对的优化技巧,并结合椭圆曲线同源自身的一些特殊性质,分析优化这两类协议的可能性.与此同时,分类回顾了目前椭圆曲线同源的有效计算方面的已有进展,提出了该方向可进一步开展的研究工作.
关键词:  SIDH  CSIDH  同源的计算  Montgomery曲线  Edwards曲线
DOI:10.13328/j.cnki.jos.006116
分类号:TP309
基金项目:国家重点研发计划(2017YFB0802500);国家自然科学基金(61672550,61972429);广东省基础与应用基础研究重大项目(2019B030302008)
Research Development on Efficient Elliptic Curve Isogenous Computations
HUANG Yan1,2, ZHANG Fang-Guo1,2
1.School of Computer Science and Engineering, Sun Yat-Sen University, Guangzhou 510006, China;2.Guangdong Provincial Key Laboratory of Information Security Technology, Guangzhou 510006, China
Abstract:
It is well known that Shor's algorithm can solve the integer factorization problem and the discrete logarithm problem in polynomial time, which makes classical cryptosystems insecure. Hence, more and more post-quantum cryptosystems emerge at present such as lattice-based, code-based, hash-based, and isogeny-based cryptosystems. Compared with other cryptosystems, the isogeny-based cryptosystems have the advantages of short key size. Nevertheless, it does not outperform other cryptosystems in respect of implementation efficiency. Based on two types of key exchange protocols from supersingular elliptic curve isogeny, this paper analyzes the possibility of optimizing two key exchange protocols according to the classical optimizations of elliptic curve scalar multiplication and pairing as well as some characteristics of elliptic curve isogeny. Meanwhile, the paper categorizes and reviews the current progress on efficient isogenous computations, and puts forward the further researches in this direction.
Key words:  SIDH  CSIDH  isogenous computation  Montgomery curve  Edwards curve

引用本文:
【打印本页】   【下载PDF全文】   查看/发表评论  【EndNote】   【RefMan】   【BibTex】
←前一篇|后一篇→ 过刊浏览    高级检索
本文已被:浏览次   下载  
分享到: 微信 更多
摘要:
关键词:  
DOI:
分类号:
基金项目:
Abstract:
Key words: