The s-boxes in ZUC doesn't seems to be optimal,why?

View previous topic View next topic Go down

The s-boxes in ZUC doesn't seems to be optimal,why?

Post  ralfe on Mon Oct 11, 2010 7:45 pm

In ZUC, it's observed that two s-boxes doesn't seems to be optimal, and their algebraic immunity are 2. In addition, as for the s-box S0, its nonlinearity and differiential unformity are moderate. Why? One "good" s-box will help to enhance the security of the alogrithm, won't it?

ralfe
Guest


Back to top Go down

Re: The s-boxes in ZUC doesn't seems to be optimal,why?

Post  Xiutao Feng on Fri Oct 15, 2010 7:14 pm

Sure, an good sbox can help to resist against some common cryptanalysis. In the design of ZUC, the choice of sboxes doesn't only rely on security but also hardware implementation costs. In order to meet the requirement of LTE algorithm "implement one instance of the algorithm using
less than 10,000 gates" (see 3GPP TS33.105), we have to choose some cheap sboxes. The sbox S0 is the product of security and cost.

Xiutao Feng

Posts : 13
Join date : 2010-08-20

View user profile

Back to top Go down

ZUC S-box equations

Post  revathi on Tue Jun 28, 2011 11:20 am

Does anyone have the equations for the ZUC S-box ?

revathi
Guest


Back to top Go down

Re: The s-boxes in ZUC doesn't seems to be optimal,why?

Post  X. FENG on Tue Jun 28, 2011 8:03 pm

on bit variables? Since the size of the sboxes is not big, it is easy to get these equations on input and output bit variables of the sboxes by means of computer program.

X. FENG
Guest


Back to top Go down

Re: The s-boxes in ZUC doesn't seems to be optimal,why?

Post  Sponsored content


Sponsored content


Back to top Go down

View previous topic View next topic Back to top

- Similar topics

 
Permissions in this forum:
You cannot reply to topics in this forum