




版權(quán)說明:本文檔由用戶提供并上傳,收益歸屬內(nèi)容提供方,若內(nèi)容存在侵權(quán),請進行舉報或認(rèn)領(lǐng)
文檔簡介
CryptographyandNetworkSecurity
Chapter9FourthEditionbyWilliamStallings LectureslidesbyLawrieBrown密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第1頁。Chapter9–PublicKeyCryptographyandRSA
EveryEgyptianreceivedtwonames,whichwereknownrespectivelyasthetruenameandthegoodname,orthegreatnameandthelittlename;andwhilethegoodorlittlenamewasmadepublic,thetrueorgreatnameappearstohavebeencarefullyconcealed.—TheGoldenBough,SirJamesGeorgeFrazer密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第2頁。Private-KeyCryptographytraditionalprivate/secret/singlekeycryptographyusesonekeysharedbybothsenderandreceiverifthiskeyisdisclosedcommunicationsarecompromisedalsoissymmetric,partiesareequalhencedoesnotprotectsenderfromreceiverforgingamessage&claimingissentbysender密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第3頁。Public-KeyCryptographyprobablymostsignificantadvanceinthe3000yearhistoryofcryptographyusestwokeys–apublic&aprivatekeyasymmetricsincepartiesarenotequalusescleverapplicationofnumbertheoreticconceptstofunctioncomplementsratherthanreplacesprivatekeycrypto密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第4頁。WhyPublic-KeyCryptography?developedtoaddresstwokeyissues:keydistribution–howtohavesecurecommunicationsingeneralwithouthavingtotrustaKDCwithyourkeydigitalsignatures–howtoverifyamessagecomesintactfromtheclaimedsenderpublicinventionduetoWhitfieldDiffie&MartinHellmanatStanfordUniin1976knownearlierinclassifiedcommunity密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第5頁。Public-KeyCryptographypublic-key/two-key/asymmetriccryptographyinvolvestheuseoftwokeys:apublic-key,whichmaybeknownbyanybody,andcanbeusedtoencryptmessages,andverifysignatures
aprivate-key,knownonlytotherecipient,usedtodecryptmessages,andsign(create)signaturesisasymmetricbecausethosewhoencryptmessagesorverifysignaturescannotdecryptmessagesorcreatesignatures密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第6頁。Public-KeyCryptography密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第7頁。Public-KeyCharacteristicsPublic-Keyalgorithmsrelyontwokeyswhere:itiscomputationallyinfeasibletofinddecryptionkeyknowingonlyalgorithm&encryptionkeyitiscomputationallyeasytoen/decryptmessageswhentherelevant(en/decrypt)keyisknowneitherofthetworelatedkeyscanbeusedforencryption,withtheotherusedfordecryption(forsomealgorithms)密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第8頁。Public-KeyCryptosystems密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第9頁。Public-KeyApplicationscanclassifyusesinto3categories:encryption/decryption(providesecrecy)digitalsignatures(provideauthentication)keyexchange(ofsessionkeys)somealgorithmsaresuitableforalluses,othersarespecifictoone密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第10頁。SecurityofPublicKeySchemeslikeprivatekeyschemesbruteforceexhaustivesearchattackisalwaystheoreticallypossiblebutkeysusedaretoolarge(>512bits)securityreliesonalargeenoughdifferenceindifficultybetweeneasy(en/decrypt)andhard(cryptanalyse)problemsmoregenerallythehardproblemisknown,butismadehardenoughtobeimpracticaltobreakrequirestheuseofverylargenumbershenceisslowcomparedtoprivatekeyschemes
密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第11頁。RSAbyRivest,Shamir&AdlemanofMITin1977bestknown&widelyusedpublic-keyschemebasedonexponentiationinafinite(Galois)fieldoverintegersmoduloaprimenb.exponentiationtakesO((logn)3)operations(easy)useslargeintegers(eg.1024bits)securityduetocostoffactoringlargenumbersnb.factorizationtakesO(elognloglogn)operations(hard)密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第12頁。RSAKeySetupeachusergeneratesapublic/privatekeypairby:selectingtwolargeprimesatrandom-p,q
computingtheirsystemmodulusn=p.qnote?(n)=(p-1)(q-1)
selectingatrandomtheencryptionkeyewhere1<e<?(n),gcd(e,?(n))=1solvefollowingequationtofinddecryptionkeyd
e.d=1mod?(n)and0≤d≤n
publishtheirpublicencryptionkey:PU={e,n}keepsecretprivatedecryptionkey:PR={d,n}密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第13頁。RSAUsetoencryptamessageMthesender:obtainspublickeyofrecipientPU={e,n}
computes:C=Memodn,where0≤M<ntodecrypttheciphertextCtheowner:usestheirprivatekeyPR={d,n}
computes:M=Cdmodn
notethatthemessageMmustbesmallerthanthemodulusn(blockifneeded)密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第14頁。WhyRSAWorksbecauseofEuler'sTheorem:a?(n)modn=1wheregcd(a,n)=1inRSAhave:n=p.q?(n)=(p-1)(q-1)
carefullychosee&dtobeinversesmod?(n)
hencee.d=1+k.?(n)forsomekhence:
Cd=Me.d=M1+k.?(n)=M1.(M?(n))k
=M1.(1)k=M1=Mmodn
密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第15頁。RSAExample-KeySetupSelectprimes:p=17&q=11Compute
n=pq=17x11=187Compute?(n)=(p–1)(q-1)=16x10=160Selecte:
gcd(e,160)=1;choosee=7Determined:
de=1mod160andd<160Valueisd=23since23x7=161=10x160+1PublishpublickeyPU={7,187}KeepsecretprivatekeyPR={23,187}密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第16頁。RSAExample-En/DecryptionsampleRSAencryption/decryptionis:givenmessageM=88(nb.88<187)encryption:C=887mod187=11
decryption:M=1123mod187=88
密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第17頁。ExponentiationcanusetheSquareandMultiplyAlgorithmafast,efficientalgorithmforexponentiationconceptisbasedonrepeatedlysquaringbaseandmultiplyingintheonesthatareneededtocomputetheresultlookatbinaryrepresentationofexponentonlytakesO(log2n)multiplesfornumberneg.75=74.71=3.7=10mod11eg.3129=3128.31=5.3=4mod11密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第18頁。Exponentiationc=0;f=1fori=kdownto0doc=2xcf=(fxf)modnifbi==1
thenc=c+1
f=(fxa)modn
returnf
密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第19頁。EfficientEncryptionencryptionusesexponentiationtopowerehenceifesmall,thiswillbefasteroftenchoosee=65537(216-1)alsoseechoicesofe=3ore=17butifetoosmall(ege=3)canattackusingChineseremaindertheorem&3messageswithdifferentmoduliiifefixedmustensuregcd(e,?(n))=1ierejectanyporqnotrelativelyprimetoe密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第20頁。EfficientDecryptiondecryptionusesexponentiationtopowerdthisislikelylarge,insecureifnotcanusetheChineseRemainderTheorem(CRT)tocomputemodp&qseparately.thencombinetogetdesiredanswerapprox4timesfasterthandoingdirectlyonlyownerofprivatekeywhoknowsvaluesofp&qcanusethistechnique密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第21頁。RSAKeyGenerationusersofRSAmust:determinetwoprimesatrandom-p,q
selecteithereordandcomputetheotherprimesp,q
mustnotbeeasilyderivedfrommodulusn=p.qmeansmustbesufficientlylargetypicallyguessanduseprobabilistictestexponentse,dareinverses,souseInversealgorithmtocomputetheother密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第22頁。RSASecuritypossibleapproachestoattackingRSAare:bruteforcekeysearch(infeasiblegivensizeofnumbers)mathematicalattacks(basedondifficultyofcomputing?(n),byfactoringmodulusn)timingattacks(onrunningofdecryption)chosenciphertextattacks(givenpropertiesofRSA)密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共27頁,當(dāng)前為第23頁。FactoringProblemmathematicalapproachtakes3forms:factorn=p.q,hencecompute?(n)andthenddetermine?(n)directlyandcomputedfindddirectlycurrentlybelieveallequivalenttofactoringhaveseenslowimprovementsovertheyearsasofMay-05bestis200decimaldigits(663)bitwithLSbiggestimprovementcomesfromimprovedalgorithmcfQStoGHFStoLScurrentlyassume1024-2048bitRSAissecureensurep,qofsimilarsizeandmatchingotherconstraints密碼學(xué)與網(wǎng)絡(luò)安全【英文】全文共
溫馨提示
- 1. 本站所有資源如無特殊說明,都需要本地電腦安裝OFFICE2007和PDF閱讀器。圖紙軟件為CAD,CAXA,PROE,UG,SolidWorks等.壓縮文件請下載最新的WinRAR軟件解壓。
- 2. 本站的文檔不包含任何第三方提供的附件圖紙等,如果需要附件,請聯(lián)系上傳者。文件的所有權(quán)益歸上傳用戶所有。
- 3. 本站RAR壓縮包中若帶圖紙,網(wǎng)頁內(nèi)容里面會有圖紙預(yù)覽,若沒有圖紙預(yù)覽就沒有圖紙。
- 4. 未經(jīng)權(quán)益所有人同意不得將文件中的內(nèi)容挪作商業(yè)或盈利用途。
- 5. 人人文庫網(wǎng)僅提供信息存儲空間,僅對用戶上傳內(nèi)容的表現(xiàn)方式做保護處理,對用戶上傳分享的文檔內(nèi)容本身不做任何修改或編輯,并不能對任何下載內(nèi)容負責(zé)。
- 6. 下載文件中如有侵權(quán)或不適當(dāng)內(nèi)容,請與我們聯(lián)系,我們立即糾正。
- 7. 本站不保證下載資源的準(zhǔn)確性、安全性和完整性, 同時也不承擔(dān)用戶因使用這些下載資源對自己和他人造成任何形式的傷害或損失。
最新文檔
- 2025年上海市購房合同范本(正式版)
- 企業(yè)向個人貸款合同標(biāo)準(zhǔn)文本
- 產(chǎn)品寄存服務(wù)合同標(biāo)準(zhǔn)文本
- 如何打造可持續(xù)的品牌價值計劃
- 班主任如何打造積極向上的班級氛圍計劃
- 全款買電纜合同標(biāo)準(zhǔn)文本
- 員工社區(qū)建設(shè)的工作方案計劃
- 公共樓道施工合同標(biāo)準(zhǔn)文本
- 倆人合伙創(chuàng)業(yè)合同標(biāo)準(zhǔn)文本
- 無人機理論測試復(fù)習(xí)試題含答案
- 骨轉(zhuǎn)移瘤課件
- 三下語文作業(yè)樣例(第三單元)
- 護士注冊健康體檢表下載【可直接打印版本】
- 地源熱泵空調(diào)技術(shù)應(yīng)用介紹
- 雙星與多星問題
- 五年級下冊音樂教案-1編花籃-湘教版
- ESS嗜睡量表評分標(biāo)準(zhǔn)(Epworth 嗜睡量表(ESS))
- 住建部《建筑業(yè)10項新技術(shù)(2017版)》解讀培訓(xùn)課件
- 合作社組織架構(gòu)圖
- 《你知道嗎?》羅鳴亮
- 彩色簡約魚骨圖PPT圖表模板
評論
0/150
提交評論