Towards practical key exchange from ordinary isogeny graphs

09/20/2018
by   Luca De Feo, et al.
0

We revisit the ordinary isogeny-graph based cryptosystems of Couveignes and Rostovtsev-Stolbunov, long dismissed as impractical. We give algorithmic improvements that accelerate key exchange in this framework, and explore the problem of generating suitable system parameters for contemporary pre-and post-quantum security that take advantage of these new algorithms. We also prove the session-key security of this key exchange in the Canetti-Krawczyk model, and the IND-CPA security of the related public-key encryption scheme, under reasonable assumptions on the hardness of computing isogeny walks. Our systems admit efficient key-validation techniques that yield CCA-secure encryp-tion, thus providing an important step towards efficient post-quantum non-interactive key exchange (NIKE).

READ FULL TEXT

page 1

page 2

page 3

page 4

research
06/02/2022

First demonstration of a post-quantum key-exchange with a nanosatellite

We demonstrate a post-quantum key-exchange with the nanosatellite SpooQy...
research
05/29/2020

Weak instances of SIDH variants under improved torsion-point attacks

SIDH is a post-quantum key exchange algorithm based on the presumed diff...
research
06/16/2021

OpenSSLNTRU: Faster post-quantum TLS key exchange

Google's CECPQ1 experiment in 2016 integrated a post-quantum key-exchang...
research
04/06/2023

Non-Interactive Quantum Key Distribution

Quantum key distribution (QKD) allows Alice and Bob to agree on a shared...
research
10/17/2018

Understanding the Related-Key Security of Feistel Ciphers from a Provable Perspective

We initiate the provable related-key security treatment for models of pr...
research
11/21/2022

Koopman interpretation and analysis of a public-key cryptosystem: Diffie-Hellman key exchange

The security of public-key cryptosystems relies on computationally hard ...
research
12/05/2018

Revisiting Deniability in Quantum Key Exchange via Covert Communication and Entanglement Distillation

We revisit the notion of deniability in quantum key exchange (QKE), a to...

Please sign up or login with your details

Forgot password? Click here to reset