GOST cryptography -- Russian Federation's crypto algorithms
Here is consolidated information about modern russian crypto algorithms: http://www.cypherpunks.ru/gost/English.html Worth altenative to western standards.
On Sat, Oct 22, 2016 at 12:59:57PM +0300, Sergey Matveev wrote:
Here is consolidated information about modern russian crypto algorithms: http://www.cypherpunks.ru/gost/English.html Worth altenative to western standards.
Current standards are standards, not "western standards". And why should we use somehing like this: https://eprint.iacr.org/2016/071.pdf?
Current standards are standards, not "western standards".
There is no "world" or "common" standards. Standards are always related to something.
And why should we use somehing like this: https://eprint.iacr.org/2016/071.pdf?
What is the problem? S-box is not randomly chosen? Does it hurt this blockcipher security? No. So there is no objective barries on using it.
On Sat, Oct 22, 2016 at 02:11:02PM +0300, Sergey Matveev wrote:
Current standards are standards, not "western standards".
There is no "world" or "common" standards. Standards are always related to something.
And why should we use somehing like this: https://eprint.iacr.org/2016/071.pdf?
What is the problem? S-box is not randomly chosen? Does it hurt this blockcipher security? No.
in fact according to the abstract of that paper: "However, the small 4-bit S-Boxes do not have very good cryptographic properties. In fact, one of them has a probability 1 differential. " is the abstract wrong?
It is not worth standard. From my point of view, seems much more that they developed part of old Magma (GOST 28147-89) and combined together with the AES optimized for 64-bit - Kuznechik (GOST R 34.12-2015). Also, the Streebog and Stribob are quite good. https://eprint.iacr.org/2015/096.pdf https://eprint.iacr.org/2015/347.pdf https://eprint.iacr.org/2015/812.pdf Also the http://gostcrypto.com/ - GOST mean the gosudarstvennyy standart / государственный стандарт Jan Dne 22.10.2016 v 19:13 stef napsal(a):
On Sat, Oct 22, 2016 at 02:11:02PM +0300, Sergey Matveev wrote:
Current standards are standards, not "western standards". There is no "world" or "common" standards. Standards are always related to something.
And why should we use somehing like this: https://eprint.iacr.org/2016/071.pdf? What is the problem? S-box is not randomly chosen? Does it hurt this blockcipher security? No. in fact according to the abstract of that paper:
"However, the small 4-bit S-Boxes do not have very good cryptographic properties. In fact, one of them has a probability 1 differential. "
is the abstract wrong?
participants (4)
-
Jan Dušátko
-
Sergey Matveev
-
stef
-
Tom