ETSI GR QSC 001-2016 Quantum-Safe Cryptography (QSC) Quantum-safe algorithmic framework (V1 1 1)《量子安全密码(QSC) 量子安全算法框架(V 1 1 1)》.pdf
《ETSI GR QSC 001-2016 Quantum-Safe Cryptography (QSC) Quantum-safe algorithmic framework (V1 1 1)《量子安全密码(QSC) 量子安全算法框架(V 1 1 1)》.pdf》由会员分享,可在线阅读,更多相关《ETSI GR QSC 001-2016 Quantum-Safe Cryptography (QSC) Quantum-safe algorithmic framework (V1 1 1)《量子安全密码(QSC) 量子安全算法框架(V 1 1 1)》.pdf(42页珍藏版)》请在麦多课文档分享上搜索。
1、 ETSI GR QSC 001 V1.1.1 (2016-07) Quantum-Safe Cryptography (QSC); Quantum-safe algorithmic framework GROUP REPORT ETSI ETSI GR QSC 001 V1.1.1 (2016-07) 2 Reference DGR/QSC-001 Keywords algorithm, authentication, confidentiality, security ETSI 650 Route des Lucioles F-06921 Sophia Antipolis Cedex -
2、FRANCE Tel.: +33 4 92 94 42 00 Fax: +33 4 93 65 47 16 Siret N 348 623 562 00017 - NAF 742 C Association but non lucratif enregistre la Sous-Prfecture de Grasse (06) N 7803/88 Important notice The present document can be downloaded from: http:/www.etsi.org/standards-search The present document may be
3、 made available in electronic versions and/or in print. The content of any electronic and/or print versions of the present document shall not be modified without the prior written authorization of ETSI. In case of any existing or perceived difference in contents between such versions and/or in print
4、, the only prevailing document is the print of the Portable Document Format (PDF) version kept on a specific network drive within ETSI Secretariat. Users of the present document should be aware that the document may be subject to revision or change of status. Information on the current status of thi
5、s and other ETSI documents is available at https:/portal.etsi.org/TB/ETSIDeliverableStatus.aspx If you find errors in the present document, please send your comment to one of the following services: https:/portal.etsi.org/People/CommiteeSupportStaff.aspx Copyright Notification No part may be reprodu
6、ced or utilized in any form or by any means, electronic or mechanical, including photocopying and microfilm except as authorized by written permission of ETSI. The content of the PDF version shall not be modified without the written authorization of ETSI. The copyright and the foregoing restriction
7、extend to reproduction in all media. European Telecommunications Standards Institute 2016. All rights reserved. DECTTM, PLUGTESTSTM, UMTSTMand the ETSI logo are Trade Marks of ETSI registered for the benefit of its Members. 3GPPTM and LTE are Trade Marks of ETSI registered for the benefit of its Mem
8、bers and of the 3GPP Organizational Partners. GSM and the GSM logo are Trade Marks registered and owned by the GSM Association. ETSI ETSI GR QSC 001 V1.1.1 (2016-07) 3 Contents Intellectual Property Rights 6g3Foreword . 6g3Modal verbs terminology 6g31 Scope 7g32 References 7g32.1 Normative reference
9、s . 7g32.2 Informative references 7g33 Abbreviations . 16g34 Primitives under consideration . 17g34.1 Introduction 17g34.2 Primitive families . 17g34.3 Primitive types 17g34.4 Application-specific or restricted-use cases . 18g34.5 Other mechanisms 18g35 Assessment framework. 18g35.1 Introduction 18g
10、35.2 Assessment criteria . 18g35.2.1 Security . 18g35.2.2 Efficiency 19g35.2.3 Implementation and deployment issues 19g35.3 Security considerations . 19g35.3.1 Classical security 19g35.3.2 Quantum security 19g35.3.3 Provable security 20g35.3.4 Forward security . 20g35.3.5 Active security 20g36 Latti
11、ce-based primitives . 21g36.1 Introduction 21g36.2 Provable security 21g36.3 Key establishment 22g36.3.1 Key agreement primitives . 22g36.3.1.1 Peikert . 22g36.3.1.2 Zhang et al . 22g36.3.1.3 Ghosh-Kate . 22g36.3.2 Key transport primitives . 22g36.3.2.1 NTRUEncrypt . 22g36.3.3 Other key establishmen
12、t primitives. 23g36.3.3.1 HIMMO 23g36.3.4 Forward security . 23g36.3.5 Active security 23g36.4 Authentication 23g36.4.1 Fiat-Shamir signatures 23g36.4.1.1 Lyubashevsky 23g36.4.1.2 Gneysu-Lyubashevsky-Pppelmann . 23g36.4.1.3 BLISS 24g36.4.2 Hash-and-sign signatures 24g36.4.2.1 NTRU-MLS 24g36.4.2.2 Ag
13、uilar et al . 24g36.4.2.3 Ducas-Lyubashevsky-Prest . 24g36.4.3 Other authentication primitives . 24g36.4.3.1 HIMMO 24g36.5 Quantum security . 24g37 Multivariate schemes 25g3ETSI ETSI GR QSC 001 V1.1.1 (2016-07) 4 7.1 Introduction 25g37.2 Provable security 25g37.3 Key establishment 26g37.3.1 Key tran
14、sport primitives . 26g37.3.1.1 Simple Matrix . 26g37.3.1.2 HFE . 26g37.3.1.3 ZHFE . 26g37.3.1.4 Polly Cracker Revisited . 26g37.3.2 Forward security . 26g37.3.3 Active security 27g37.4 Authentication 27g37.4.1 Fiat-Shamir signatures 27g37.4.1.1 Sakumoto-Shirai-Hiwatari 27g37.4.2 Hash-and-sign signat
15、ures 27g37.4.2.1 Quartz 27g37.4.2.2 Gui. 27g37.4.2.3 UOV 27g37.4.2.4 Rainbow 28g37.5 Quantum security . 28g38 Code-based primitives 28g38.1 Introduction 28g38.2 Provable security 28g38.3 Key establishment 29g38.3.1 Key transport primitives . 29g38.3.1.1 McEliece and Niederreiter 29g38.3.1.2 Wild McE
16、liece 29g38.3.1.3 MDPC McEliece . 29g38.3.1.4 LRPC McEliece 29g38.3.2 Forward security . 29g38.3.3 Active security 29g38.4 Authentication 30g38.4.1 Fiat-Shamir signatures 30g38.4.1.1 Cayrel et al 30g38.4.2 Hash-and-sign signatures 30g38.4.2.1 CFS . 30g38.4.2.2 RankSign . 30g38.5 Quantum security . 3
17、0g39 Hash-based primitives 30g39.1 Introduction 30g39.2 Provable security 31g39.3 Authentication 31g39.3.1 Stateful signatures . 31g39.3.1.1 Merkle . 31g39.3.1.2 XMSS 31g39.3.2 Stateless signatures . 31g39.3.2.1 SPHINCS 31g39.4 Quantum security . 32g310 Isogeny-based primitives 32g310.1 Introduction
18、 32g310.2 Provable security 32g310.3 Key establishment 32g310.3.1 Key agreement primitives . 32g310.3.1.1 Jao-De Feo 32g310.3.2 Forward security . 33g310.3.3 Active security 33g310.4 Authentication 33g310.4.1 Other authentication primitives . 33g310.4.1.1 Jao-Soukharev . 33g310.4.1.2 Sun-Tian-Wang .
19、 33g310.5 Quantum security . 33g3ETSI ETSI GR QSC 001 V1.1.1 (2016-07) 5 11 Key length summary 33g311.1 Introduction 33g311.2 Key establishment 34g311.3 Authentication 35g312 Conclusions 36g3Annex A: Classical key size comparison 38g3A.1 Key establishment 38g3A.2 Authentication 39g3Annex B: Quantum
20、key size comparison . 40g3B.1 Key establishment 40g3B.2 Authentication 41g3History 42g3ETSI ETSI GR QSC 001 V1.1.1 (2016-07) 6 Intellectual Property Rights IPRs essential or potentially essential to the present document may have been declared to ETSI. The information pertaining to these essential IP
21、Rs, if any, is publicly available for ETSI members and non-members, and can be found in ETSI SR 000 314: “Intellectual Property Rights (IPRs); Essential, or potentially Essential, IPRs notified to ETSI in respect of ETSI standards“, which is available from the ETSI Secretariat. Latest updates are av
22、ailable on the ETSI Web server (https:/ipr.etsi.org/). Pursuant to the ETSI IPR Policy, no investigation, including IPR searches, has been carried out by ETSI. No guarantee can be given as to the existence of other IPRs not referenced in ETSI SR 000 314 (or the updates on the ETSI Web server) which
23、are, or may be, or may become, essential to the present document. Foreword This Group Report (GR) has been produced by ETSI Industry Specification Group (ISG) Quantum-Safe Cryptography (QSC). Modal verbs terminology In the present document “should“, “should not“, “may“, “need not“, “will“, “will not
24、“, “can“ and “cannot“ are to be interpreted as described in clause 3.2 of the ETSI Drafting Rules (Verbal forms for the expression of provisions). “must“ and “must not“ are NOT allowed in ETSI deliverables except when used in direct citation. ETSI ETSI GR QSC 001 V1.1.1 (2016-07) 7 1 Scope The prese
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- ETSIGRQSC0012016QUANTUMSAFECRYPTOGRAPHYQSCQUANTUMSAFEALGORITHMICFRAMEWORKV111 量子 安全 密码 QSC 算法 框架 V111PDF

链接地址:http://www.mydoc123.com/p-733232.html