版權說明:本文檔由用戶提供并上傳,收益歸屬內(nèi)容提供方,若內(nèi)容存在侵權,請進行舉報或認領
文檔簡介
古典密碼(1)-ClassicalEncryptionTechniques1教學視頻、國家級一流在線課程鏈接:/course/FUDAN-12063578111.古典密碼
1.1對稱密鑰密碼模型
SymmetricCipherModel2要解決的問題:通信保密安全需求SecurityRequirements安全服務SecurityServices保密性Confidentiality完整性Integrity可用性Availability3三個古典密碼系統(tǒng)羊皮傳書藏頭詩Caesar4羊皮傳書古希臘的斯巴達人將一條1厘米寬、20厘米左右長的羊皮帶,以螺旋狀繞在一根特定粗細的木棍上…...5藏頭詩明才子唐伯虎:我愛蘭江水悠悠,愛晚亭上楓葉稠。秋月溶溶照佛寺,香煙裊裊繞經(jīng)樓。明朝解縉祝某宰相壽辰進詩:真真宰相,老老元臣,烏紗戴頂,龜鶴遐林.粗看"密文”,渾然詩句,頌揚兼祝愿,福祿壽全有;細究則密語藏頭,挖苦帶諷刺,詛咒"真老烏龜”6CaesarCipherearliestknownsubstitutioncipherbyJuliusCaesar
firstattesteduseinmilitaryaffairsexample:meetmeafterthetogapartyPHHWPHDIWHUWKHWRJDSDUWB7Terminologiesplaintext-theoriginalmessageciphertext-thecodedmessagekey-infousedincipherknownonlytosender/receiverencipher(encrypt)-convertingplaintexttociphertextdecipher(decrypt)-recoveringplaintextfromciphertextcipher-algorithmfortransformingplaintexttociphertext8SymmetricCipherModel9DefinitionAcryptosystemisa5-tuple
(E,D,p,K,C),wherepisthesetofplaintexts,Kthesetofkeys,Cisthesetofciphertexts,E:M×KCisthesetofEncryptionalgorithms,D:C×KMisthesetofDecryptionalgorithms.101.古典密碼
1.2密碼學的基礎假設11三個古典系統(tǒng)的再討論Caesar羊皮傳書藏頭詩12CaesarCiphermeetmeafterthetogapartyPHHWPHDIWHUWKHWRJDSDUWBp,C,K,E,D?13CaesarCiphercandefinetransformationas:abcdefghijklmnopqrstuvwxyzDEFGHIJKLMNOPQRSTUVWXYZABCmathematicallygiveeachletteranumberabcdefghijklm0123456789101112nopqrstuvwxyZ13141516171819202122232425thenhaveCaesarcipheras:C=E(p)=(p+k)mod(26)p=D(C)=(C–k)mod(26)14羊皮傳書E,D,p,C,K?15藏頭詩真真宰相,老老元臣,烏紗戴頂,龜鶴遐林.E,D,p,C,K?全詩為"密文”,其"密鑰”是每句詩的首字,可串接成義,作者的真意就隱藏在詩句的首字串接文("明文”)中.Steganography,隱寫術16RethinkingoftheModel17encipherdecipher(plaintextin-ciphertextout)ciphertextmsg(ciphertextin-plaintextout)(shouldunderstand
nothing
aboutthemsg)eavesdropperbla-blacmb-cmbbla-blaSharedKeyNeed
keyexchangeAliceandBobwanttoestablishasharedsecret(key)whenotherpeople(eavesdroppers)arelisteningHowto?inboundVs.outbound18AliceBobDiscursionsontheModel19Q1:Whyuseakey?Q2:Whichpartsshouldbekeptsecret?whichnot?Discussion模型合理嗎?什么當保密;什么當公開?19世紀荷蘭人A.Kerckhoffs就提出了一個在密碼學界被公認為基礎的假設,也就是著名的“Kerckhoffs假設”:秘密必須全寓于密鑰。
OtherModels?2021Discussion“誰是我們的敵人,誰是我們的朋友,這個問題是革命的首要問題”——毛選易用性秘密全部寓于密鑰≠算法當公開,要看應用環(huán)境(商用,軍用,……)開放的系統(tǒng)更安全,??Terminologies(cont.)cryptography-studyofencryptionprinciples/methodscryptanalysis(codebreaking)-thestudyofprinciples/methodsofdecipheringciphertextwithoutknowingkeycryptology-thefieldofbothcryptographyandcryptanalysis22CryptographyCatalogThetypeofoperationsusedfortransforming
plaintexttociphertextSubstitution:eachelementintheplaintextismappedintoanotherelementTransposition:elementsintheplaintextarerearrangedProduct:multiplestagesofsubstitutionsandtranspositionsThenumberofthekeysusedSymmetric,single-key,secret-key,conventional
encryption:BothsenderandreceiverusethesamekeyAsymmetric,two-key,orpublic-key
encryption:thesenderandreceiveeachusesadifferentkey23CryptographyCatalogThewayinwhichtheplaintextisprocessedBlock:processestheinputoneblockofelementsatatime,producinganoutput
block
foreachinputblockStream:processestheinputelementscontinuously,producingoutputoneelementatatime,asitgoesalong.242.如何設計好的密碼算法?
攻擊->防御->改進->更好的密碼算法->攻擊…螺旋式上升過程中領會密碼設計的關鍵問題252.如何設計好的密碼算法?
2.1
Caesar密碼與單字母表密碼
攻擊->防御->改進->更好的密碼算法->攻擊…螺旋式上升過程中領會密碼設計的關鍵問題26SubstitutionTechniquesCaesarcipherEasytobreak!27CryptanalysisofCaesarCipherThereareonly25keystotryAmapstoA,B,..Zcouldsimplytryeachinturnabruteforcesearch
givenciphertext,justtryallshiftsoflettersThelanguageofPlaintextisknownandeasilyrecognizabledoneedtorecognizewhenhaveplaintexteg.breakciphertext"GCUAVQDTGCM"28MonoalphabeticCipherImprovementonCaesarCipherRatherthansubstitutingaccordingtoaregularpattern–anylettercanbesubstitutedforanyotherletter,aslongaseachletterhasauniquesubstituteletter,andviceversa.29MonoalphabeticCipherK: Plain:abcdefghijklmnopqrstuvwxyz Cipher:DKVQFIBJWPESCXHTMYAUOLRGZNPlaintext:ifwewishtoreplacelettersCiphertext:WIRFRWAJUHYFTSDVFSFUUFYA
hencekeyis26letterslong30MonoalphabeticCipherSecuritynowhaveatotalof26!=4x1026keyswithsomanykeys,mightthinkissecure
butwouldbe!!!WRONG!!!
problemislanguagecharacteristics31LanguageRedundancyandCryptanalysishumanlanguagesareredundant
lettersarenotequally
commonlyusedinEnglisheisbyfarthemostcommonletter,thenT,R,N,I,O,A,S
somelettersarefairlyrare,eg.Z,J,X,Qtablesofsingle,double&tripleletterfrequencies32FrequencyofLettersinEnglishText33UseinCryptanalysiskeyconcept-monoalphabeticsubstitutionciphersdonotchangerelativeletterfrequencies
discoveredbyArabianscientistsin9thcenturycalculateletterfrequenciesforciphertextcomparecounts/plotsagainstknownvaluesifCaesarcipherlookforcommonpeaks/troughspeaksat:A-E-Itriple,NOpair,RSTtripletroughsat:JK,X-Zformonoalphabeticmustidentifyeachlettertablesofcommondouble/triplelettershelp34CryptanalyticAttacks35對于對手而言最壞情況下,仍有一種攻擊方法可用BruteForceSearch,窮舉法BruteForceSearchalwayspossibletosimply
try
everykey
mostbasic
attack,proportionaltokeysizeassumeeitherknoworrecogniseplaintext36MoreDefinitionsunconditionalsecurity
nomatterhowmuch
computerpowerisavailable,theciphercannotbebrokensincetheciphertextprovidesinsufficientinformationtouniquelydeterminethecorrespondingplaintextcomputationalsecurity
givenlimited
computingresources(eg.timeneededforcalculationsisgreaterthanageofuniverse),theciphercannotbebroken
Unconditionalsecuritywouldbenice,buttheonlyknownsuchcipheristheone-timepad(later).Forallreasonable
encryptionalgorithms,havetoassumecomputationalsecuritywhereiteithertakestoolong,oristooexpensive,tobother
breakingthecipher.372.如何設計好的密碼算法?
2.2
Playfair密碼
攻擊->防御->改進->更好的密碼算法->攻擊…螺旋式上升過程中領會密碼設計的關鍵問題38MonoalphabeticCipherSecuritynowhaveatotalof26!=4x1026keyswithsomanykeys,mightthinkissecure
butwouldbe!!!WRONG!!!
problemislanguagecharacteristics39提高單字母表密碼安全性兩個角度“多”對“一”
Playfair“一”對“多”
Vigenère40PlayfairCiphernoteventhelargenumberofkeysinamonoalphabeticcipherprovidessecurity
oneapproachtoimprovingsecuritywastoencryptmultiplelettersthePlayfairCipherisanexampleinventedbyCharlesWheatstonein1854,butnamedafterhisfriendBaronPlayfair
4142PlayfairKeyMatrixa5X5matrixoflettersbasedonakeywordfillinlettersofkeyword(sansduplicates)fillrestofmatrixwithotherletterseg.usingthekeywordMONARCHYMONARCHYBDEFGIKLPQSTUVWXZ43EncryptingandDecryptingplaintextencryptedtwolettersatatime:ifapairisarepeatedletter,insertafillerlike'X', eg."balloon"encryptsas"balxloon"ifbothlettersfallinthesame
row,replaceeachwithlettertoright(wrappingbacktostartfromend), eg.“ar"encryptsas"RM"ifbothlettersfallinthesame
column,replaceeachwiththeletterbelowit(againwrappingtotopfrombottom),eg.“mu"encryptsto"CM"otherwiseeachletterisreplacedbytheoneinitsrowinthecolumnof
theotherletterofthepair,eg.“hs"encryptsto"BP",and“ea"to"IM"or"JM"(asdesired)44SecurityofthePlayfairCiphersecuritymuchimproved
overmonoalphabeticsincehave26x26=676digramswouldneeda676entryfrequencytabletoanalyse(verses26foramonoalphabetic)andcorrespondinglymoreciphertextwaswidelyusedformanyyears(eg.US&BritishmilitaryinWW1)itcanbebroken,givenafewhundredletterssincestillhasmuchofplaintextstructure452.如何設計好的密碼算法?
2.3
Vigenère密碼
攻擊->防御->改進->更好的密碼算法->攻擊…螺旋式上升過程中領會密碼設計的關鍵問題46PolyalphabeticCiphersanotherapproachtoimprovingsecurityistousemultiplecipheralphabets
calledpolyalphabetic
substitution
ciphers
makescryptanalysisharderwithmorealphabetstoguessandflatterfrequencydistributionuseakeytoselectwhichalphabetisusedforeachletterofthemessageuseeachalphabetinturnrepeatfromstartafterendofkeyisreached47VigenèreCiphersimplestpolyalphabeticsubstitutioncipheristheVigenèreCipher
effectivelymultiplecaesarcipherskeyismultipleletterslongK=k1k2...kdithletterspecifiesithalphabettouseuseeachalphabetinturnrepeatfromstartafterdlettersinmessagedecryptionsimplyworksinreverse48VigenèreCipher49PlaintextKeyExamplewritetheplaintextoutwritethekeywordrepeatedaboveituseeachkeyletterasacaesarcipherkeyencryptthecorrespondingplaintextletteregusingkeyworddeceptiveKey:deceptivedeceptivedeceptivePlaintext:wearediscoveredsaveyourselfCiphertext:ZICVTWQNGRZGVTWAVZHCQYGLM
溫馨提示
- 1. 本站所有資源如無特殊說明,都需要本地電腦安裝OFFICE2007和PDF閱讀器。圖紙軟件為CAD,CAXA,PROE,UG,SolidWorks等.壓縮文件請下載最新的WinRAR軟件解壓。
- 2. 本站的文檔不包含任何第三方提供的附件圖紙等,如果需要附件,請聯(lián)系上傳者。文件的所有權益歸上傳用戶所有。
- 3. 本站RAR壓縮包中若帶圖紙,網(wǎng)頁內(nèi)容里面會有圖紙預覽,若沒有圖紙預覽就沒有圖紙。
- 4. 未經(jīng)權益所有人同意不得將文件中的內(nèi)容挪作商業(yè)或盈利用途。
- 5. 人人文庫網(wǎng)僅提供信息存儲空間,僅對用戶上傳內(nèi)容的表現(xiàn)方式做保護處理,對用戶上傳分享的文檔內(nèi)容本身不做任何修改或編輯,并不能對任何下載內(nèi)容負責。
- 6. 下載文件中如有侵權或不適當內(nèi)容,請與我們聯(lián)系,我們立即糾正。
- 7. 本站不保證下載資源的準確性、安全性和完整性, 同時也不承擔用戶因使用這些下載資源對自己和他人造成任何形式的傷害或損失。
最新文檔
- 幼兒園保育員一天的工作流程詳細范例
- 上海車位交易指南(2024版)
- 2024析產(chǎn)協(xié)議書模板:房地產(chǎn)項目析產(chǎn)合同3篇
- 2024政府與華為簽訂的旅游產(chǎn)業(yè)合作協(xié)議3篇
- 2024旅游服務綜合合作協(xié)議
- 全新配方化妝品研發(fā)合作合同04
- A輪增資擴股合同范本:2024年修訂版版B版
- 專業(yè)化裝卸服務協(xié)議2024版細則版A版
- 2024某企業(yè)與咨詢公司關于企業(yè)戰(zhàn)略咨詢服務合同
- OEM合作協(xié)議書范本軟件產(chǎn)品
- 《計算機網(wǎng)絡 》課件第1章
- 山東省濟南市2023-2024學年高二上學期期末考試地理試題 附答案
- 期末復習試題1(試題)-2024-2025學年二年級上冊數(shù)學北師大版
- 1《地球的表面》說課稿-2024-2025學年科學五年級上冊教科版
- 汽車以租代購合同完整版完整版
- 音樂制作基礎知識單選題100道及答案解析
- 2024至2030年大型儲油罐項目投資價值分析報告
- GB/T 44764-2024石油、石化和天然氣工業(yè)腐蝕性石油煉制環(huán)境中抗硫化物應力開裂的金屬材料
- 2024-2030年中國有機肥料行業(yè)需求狀況與投資前景預測報告
- 2025屆江蘇省南京師大附中物理高一上期末學業(yè)質(zhì)量監(jiān)測試題含解析
- 農(nóng)戶種地合作協(xié)議書范本模板
評論
0/150
提交評論