On Lions and Elligators: An efficient constant-time implementation of CSIDH

On Lions and Elligators: An efficient constant-time implementation of CSIDH
复制标题

关于狮子和鳄鱼:CSIDH 的高效恒定时间实现

DOI:
10.1007/978-3-030-25510-7_17
复制
发表时间:
2019
期刊:
IACR Cryptol. ePrint Arch.
影响因子:
--
通讯作者:
S. Reith
S. Reith
中科院分区:
--
文献类型:
--
作者:
Michael Meyer;Fabio Campos;S. Reith

文献摘要

被引文献

相似文献

最近提出的CSIDH原语是非常小密钥的后量子静态密钥交换的有希望的候选者。然而,到目前为止,只有Castryck、Lange、Martindale、Panny和Renes的可变时间概念验证实现,最近由Meyer和Reith优化,它可以泄露关于私钥的各种信息。因此,我们提出了一种有效的恒定时间实现,该实现仅从非负数的间隔中采样关键元素并使用虚拟同基因,这可以防止某些类型的侧信道攻击。为了获得更有效的实现,我们应用了一些优化,例如Elligator和新引入的SIMBA。
The recently proposed CSIDH primitive is a promising candidate for post quantum static-static key exchanges with very small keys. However, until now there is only a variable-time proof-of-concept implementation by Castryck, Lange, Martindale, Panny, and Renes, recently optimized by Meyer and Reith, which can leak various information about the private key. Therefore, we present an efficient constant-time implementation that samples key elements only from intervals of nonnegative numbers and uses dummy isogenies, which prevents certain kinds of side-channel attacks. We apply several optimizations, e.g. Elligator and the newly introduced SIMBA, in order to get a more efficient implementation.