摘要
该文评估一类广义Feistel密码(GFC)抵抗差分和线性密码分析的能力:如果轮函数是双射且它的最大差分和线性特征的概率分别是p和q,则16轮GFC的差分和线性特征的概率的上界为p^7和q^7;如果轮函数采用SP结构且是双射,S盒的最大差分和线性特征的概率是ps和qs,P变换的分支数为Pd,则16轮GFC的差分和线性特征的概率的上界为(ps)^(3Pd+1)和(qs)^(3Pd+1)。
This paper studies the security evaluation against differential and linear attacks for a class of generalized Feistel ciphers. If the round function is bijective and its maximum differential and linear characteristic probabilities are p and q, then the upper bounds of maximum differential and linear characteristic probabilities for 16-round ciphers are p7 and q7. If the round function is bijective and SP structure, the maximum differential and linear characteristic probabilities of S-boxes are ps and qs, the branch number of P is P^, then the upper bounds of maximum differential and linear characteristic probabilities for 16-round ciphers are (ps)3Pd+l and (qs)3Pd+1.
出处
《电子与信息学报》
EI
CSCD
北大核心
2002年第9期1177-1184,共8页
Journal of Electronics & Information Technology
基金
973项目(No.G1999035802)
国家自然科学基金(No.60103023)