LOTUS and LOCUS AEAD: Hardware Benchmarking and Security Analysis
LOTUS and LOCUS AEAD: Hardware Benchmarking and Security Analysis
复制标题
LOTUS 和 LOCUS AEAD:硬件基准测试和安全分析
DOI:
--
复制
发表时间:
2019
期刊:
影响因子:
--
通讯作者:
Sasaki
中科院分区:
文献类型:
--
作者:
Avik Chakraborti;N. Datta;Ashwin Jha;C. M. López;M. Nandi;Yu;Sasaki
In this short note, we propose two new designs for lightweight AE modes, called LOCUS and LOTUS, structurally similar to OCB and OTR, respectively. These modes achieve notably higher AE security bounds with lighter primitives (only a 64-bit tweakable block cipher). Especially, they satisfy the NIST requirements: achieving security against an adversary that can make close to 264 queries and 2128 computations, even when instantiated with a 64-bit primitive with 128-bit key. Both these modes are fully parallelizable and provide full INT-RUP security. We use TweGIFT-64, a tweakable variant of the GIFT block cipher, to instantiate our AE modes. TweGIFT-64-LOCUS and TweGIFT-64-LOTUS are signifcantly light in hardware implementation. To justify, we provide our FPGA based implementation results, which demonstrate that TweGIFT-64-LOCUS consumes only 257 slices and 690 LUTs, while TweGIFT-64-LOTUS consumes only 255 slices and 664 LUTs. We have also provided concrete security analysis both OCB and OTR.