1. 北京科技大学信息工程学院,北京,100083
2. 北京科技大学信息工程学院北京,100083
3. ,湖南,长沙,410073
纸质出版:2006
移动端阅览
苏盛辉, 杨义先, 杨炳儒. REESSE1加密方案中杠杆函数的充分必要性分析[J]. 电子学报, 2006,34(10):1892-1895.
SU Sheng-hui, YANG Yi-xian, YANG Bing-ru. The Necessity and Sufficiency Analysis of the Lever Function in the REESSE1 Encryption Scheme[J]. Acta Electronica Sinica, 2006, 34(10): 1892-1895.
文章介绍了REESSE1公钥体制的加密方案
包括密钥生成、加密和解密3个算法.通过对密钥变换公式中杠杆函数(.)为常数或不存在的假设
讨论了连分式攻击
因而从逆否命题的角度证明了(.)对REESSE1体制私钥安全的必要性.作者通过不确定推理、反例列举和参数归约的方法论述了(.)存在时
REESSE1的私钥安全性等价于多变量排列难题、明文安全性大于离散对数难题
从而证明了(.)对REESSE1体制私钥与明文安全的充分性.最后
指出了私钥中包含三个独立参数的REESSE1体制与私钥中仅包含一个或两个参数的MH、RSA和ElGamal体制相比
复杂性得到了显著提高.
This paper presents the REESSE1 public key cryptosystem including three algorithms for keys
encryption and decryption
discusses the continued fraction attack by presuming that the lever function (.) in the key transform is one constant or does not exists
and proves that (.) is necessary to the private key security of REESSE1 from the contrapositive assertion.The authors argue that the private key security is equivalent to the multivariate arrangement hardness
and the plaintext security is greater than the discrete logarithm hardness when (.) exists in the transform by expounding the indeterminate reasoning
giving counterexamples and reducing parameters
and so show that (.) is sufficient for the private key and the plaintext securities.At last
point out that the complexity of REESSE1 whose private key contains three independent parameters is far higher than those of MH
RSA and ElGamal whose private keys contain only one or two parameters respectively.
0
浏览量
989
下载量
1
CSCD
关联资源
相关文章
相关作者
相关机构
京公网安备11010802024621