Estimating key sizes for high dimensional lattice-based systems

J van de Pol, NP Smart - IMA International Conference on Cryptography …, 2013 - Springer
IMA International Conference on Cryptography and Coding, 2013Springer
We revisit the estimation of parameters for use in applications of the BGV homomorphic
encryption system, which generally require high dimensional lattices. In particular, we utilize
the BKZ-2.0 simulator of Chen and Nguyen to identify the best lattice attack that can be
mounted using BKZ in a given dimension at a given security level. Using this technique, we
show that it should be possible to work with lattices of smaller dimensions than previous
methods have recommended, while still maintaining reasonable levels of security. As …
Abstract
We revisit the estimation of parameters for use in applications of the BGV homomorphic encryption system, which generally require high dimensional lattices. In particular, we utilize the BKZ-2.0 simulator of Chen and Nguyen to identify the best lattice attack that can be mounted using BKZ in a given dimension at a given security level. Using this technique, we show that it should be possible to work with lattices of smaller dimensions than previous methods have recommended, while still maintaining reasonable levels of security. As example applications we look at the evaluation of AES via FHE operations presented at Crypto 2012, and the parameters for the SHE variant of BGV used in the SPDZ protocol from Crypto 2012.
Springer
以上显示的是最相近的搜索结果。 查看全部搜索结果