CA3020828C

Method and system for cheon resistant static diffie-hellman security

Abstract

A method for providing Cheon-resistance security for a static elliptic curve Diffie- Hellman cryptosystem (ECDH), the method including providing a system for message communication between a pair of correspondents, a message being exchanged in accordance with ECDH instructions executable on computer processors of the respective correspondents, the ECDH instructions using a curve selected from a plurality of curves, the selecting including choosing a range of curves; selecting, from the range of curves, curves matching a threshold efficiency; excluding, within the selected curves, curves which may include intentional vulnerabilities; and electing, from non-excluded selected curves, a curve with Cheon resistance, the electing comprising a curve from an additive group of order q, wherein q is prime, such that q-1 = cr and q+1 = ds, where r and s are primes and c and d are integer Cheon cofactors of the group, such that cd = 48.

CA3020828C, drawing sheet 1
Sheet 1 of 5

Term

10.4 yearsleft in the term

Expires 14 February 2037.

  1. Priority
  2. Filed
  3. Granted
  4. Today
  5. Expires

8 claims: 4 independent, 4 dependent

  1. 1
    A method for providing Cheon-resistance security for a static elliptic curve Diffie- Hellman cryptosystem (ECDH), the method comprising:at the first computing device, selecting a curve for message communication between the first computing device and a second computing device, a message being exchanged in accordance with ECDH instructions executable on computer processors of the respective first and second computing devices, the ECDH instructions using a curve selected from a plurality of curves, the selecting comprising: choosing a range of curves;selecting, from the range of curves, curves matching a threshold efficiency;excluding, within the selected curves, curves which may include intentional vulnerabilities;and electing, from non-excluded selected curves, a curve with Cheon resistance, the electing comprising electing a curve from an additive group of order q, wherein q is prime, such that q-1 = crand q+1 = ds, where rand s are primes and c and dare integer Cheon cofactors of the group, such that cd £ 48 wherein the choosing comprises choosing a range of curves having a length matching a threshold security level, and wherein the selecting comprises selecting curves having a field size close to a power of two, and having efficient endomorphism.
  2. 6
    A method for providing Cheon-resistance security for a static elliptic curve DiffieHellman cryptosystem (ECDH), the method comprising:at the first computing device, selecting a curve for message communication between the first computing device and a second computing device, a message being exchanged in accordance with ECDH instructions executable on computer processors of the respective first and second computing devices, the ECDH instructions using a curve comprising: an additive group of order q, wherein q is prime, such that q-1 = cr and g+1 = ds, where r and s are primes and c and d are integer Cheon cofactors of the group, such that cd s 48;an affine equation in the form x 3 + k, where r=V—Î;a length of 454 bits;a field size p=2 454 + (3 x 17 x 11287) 2 ;an order q=2 452 +(7x41117) 2 ;r=(g-1V8;s=(q+1)/6;and the selected curve having a length matching a threshold security level, a field size close to a power of two, and an efficient endomorphism.
  3. 7
    A computing device for providing Cheon-resistance security for a static elliptic curve Diffie-Hellman cryptosystem (ECDH), the computing device comprising a processor for executing program instructions configured to carry out the method of any one of claims 1 to 6.
  4. 8
    A computer program product comprising a computer readable memory storing computer instructions thereon that when executed by a computer perform the method of any one of claims 1 to 6.