作者: Atsushi Fujioka , Koutarou Suzuki , Keita Xagawa , Kazuki Yoneyama
关键词:
摘要: This paper discusses how to realize practical post-quantum authenticated key exchange (AKE) with strong security, i.e., CK+ security (Krawczyk, CRYPTO 2005). It is known that strongly secure AKE protocols exist on a generic construction from IND-CCA encapsulation mechanisms (KEMs) in the standard model.However, when it instantiated existing KEMs, resultant are far communication complexity. We propose of OW-CCA KEMs and prove random oracle model. exploit instantiate various assumptions; DDH, gap DH, CDH, factoring, RSA, DCR, (ring-)LWE, McEliece one-way, NTRU subset sum, multi-variate quadratic systems, more. For example, costs our lattice-based scheme approximately 14 times lower than previous instantiation (for 128-bit security). Also, case code-based scheme, 25 lower.