摘要
在信息安全的许多实际应用中往往需要同时提供私密性和认证性,通常采用加密模式和消息认证码的组合来实现这一目的,但这种实现方式须对同一消息分加密和认证两阶段进行处理,不仅密钥使用量大,而且效率低下.本文基于CBC加密模式设计了一种新的一阶段加密认证方案OXCBC,能够同时提供私密性和认证性,且仅使用一个密钥和一个Nonce,与同类型的加密认证方案相比具有较高的效率.在分组密码是强伪随机置换的假设下,证明了该方案的认证性.
In many practical applications of information security,an authenticated-encryption scheme is often constructed by appropriately combining an encryption scheme and a message authentication code.Using this scheme,the same message must be deal with in two-pass,not only using two keys,but also having low efficiency.Based on CBC mode,we propose a new one-pass authenticated encryption mode OXCBC,which provides privacy and authenticity simultaneously.OXCBC uses only one key and a nonce and is more efficient than other one-pass authenticated encryption schemes.We prove OXCBC secure,quantifying the adversary's ability to violate the mode's authenticity in terms of the quality of its block cipher as a strong PRP.
出处
《电子学报》
EI
CAS
CSCD
北大核心
2009年第10期2187-2192,共6页
Acta Electronica Sinica
基金
国家自然科学基金(No.60873191
60821001
60903152)
高等学校博士学科点专项科研基金(No.200800131016)
北京市自然科学基金(No.4072020)