On the Statistical Properties of Diffie–hellman Distributions
نویسندگان
چکیده
Let p be a large prime such that p−1 has some large prime factors, and let θ ∈ ZZp be an r-th power residue for all small factors of p− 1. The corresponding Diffie-Hellman (DH) distribution is (θx, θy, θxy) where x, y are randomly chosen from ZZp. A recently formulated assumption is that given p, θ of the above form it is infeasible to distinguish in reasonable time between DH distribution and triples of numbers chosen ∗IBM T.J. Watson Research Center, Yorktown Heights, NY 10598, USA. [email protected] †Department of Mathematics, University of Toronto, Toronto, Ontario M5S 3G3, Canada. [email protected] ‡Department of Mechanics and Mathematics, Moscow State University, Moscow, 119899, Russia. [email protected] §Department of Mathematics, University of Missouri, Columbia, MO 65211, USA. [email protected] ¶Department of Mathematics, University of Missouri, Columbia, MO 65211, USA. [email protected] ‖School of MPCE, Macquarie University, Sydney, NSW 2109, Australia. [email protected]
منابع مشابه
Diffie-Hellman type key exchange protocols based on isogenies
In this paper, we propose some Diffie-Hellman type key exchange protocols using isogenies of elliptic curves. The first method which uses the endomorphism ring of an ordinary elliptic curve $ E $, is a straightforward generalization of elliptic curve Diffie-Hellman key exchange. The method uses commutativity of the endomorphism ring $ End(E) $. Then using dual isogenies, we propose...
متن کاملA NEW PROTOCOL MODEL FOR VERIFICATION OF PAYMENT ORDER INFORMATION INTEGRITY IN ONLINE E-PAYMENT SYSTEM USING ELLIPTIC CURVE DIFFIE-HELLMAN KEY AGREEMENT PROTOCOL
Two parties that conduct a business transaction through the internet do not see each other personally nor do they exchange any document neither any money hand-to-hand currency. Electronic payment is a way by which the two parties transfer the money through the internet. Therefore integrity of payment and order information of online purchase is an important concern. With online purchase the cust...
متن کاملObstacles to the torsion-subgroup attack on the decision Diffie-Hellman Problem
Cheng and Uchiyama show that if one is given an elliptic curve, depending on a prime p, that is defined over a number field and has certain properties, then one can solve the Decision Diffie-Hellman Problem (DDHP) in Fp in polynomial time. We show that it is unlikely that an elliptic curve with the desired properties exists.
متن کاملDHIES: An encryption scheme based on the Diffie-Hellman Problem
This paper describes a Diffie-Hellman based encryption scheme, DHIES (formerly named DHES and DHAES), which is now in several (draft) standards. The scheme is as efficient as ElGamal encryption, but has stronger security properties. Furthermore, these security properties are proven to hold under appropriate assumptions on the underlying primitive. DHIES is a Diffie-Hellman based scheme that com...
متن کاملDHAES: An Encryption Scheme Based on the Diffie-Hellman Problem
This paper describes a Diffie-Hellman based encryption scheme, DHIES (formerly named DHES and DHAES), which is now in several (draft) standards. The scheme is as efficient as ElGamal encryption, but has stronger security properties. Furthermore, these security properties are proven to hold under appropriate assumptions on the underlying primitive. DHIES is a Diffie-Hellman based scheme that com...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2002