2013幎ã®çµããã«ãæšæºåã®ããã®æè¡å§å¡äŒãæå·æ
å ±ã»ãã¥ãªãã£ãïŒTC 26ïŒããã·ã¢é£éŠæå·ã¢ã«ãããŒãããã³OJSCãInfoTeKSãã¯ãGOST R 34.11-2012ãããã·ã¥ããããã®åœå®¶æšæºã®æå·è§£æã®ç«¶äºãçºè¡šããŸããã ã³ã³ãã¹ãã®æ¡ä»¶ã®è©³çްãªèª¬æã¯ããŠã§ããµã€ãwww.streebog.infoã§å
¬éãããŠããŸãã ãããã£ãŠããã®æå·èŠæ Œã®åæã«é¢ããæ¢åã®ç ç©¶ã¯ãæå·åæè
ãGOST R 34.11-2012ã¢ã«ãŽãªãºã ã®ãããªãç ç©¶ã®åºçºç¹ã§ãããããæå·åæè
ã®é¢å¿ãé«ãŸã£ãŠãããšèããããŸãã
çŸåšãGOST R 34.11-2012ã®æå·è§£èªã«é¢ããããã€ãã®ç ç©¶ãç¥ãããŠããŸãã ãããããã®ã¢ã«ãŽãªãºã ã«å¯Ÿããæã广çãªæ»æãææ¡ãããã®ã¯ãZongyue WangãHongbo Yuãããã³Xiaoyun Wangã®ã GOST Rããã·ã¥é¢æ°ã®æå·è§£èª ãã®ä»äºã§ãã ãããã£ãŠãç§ã®æèŠã§ã¯ããã®äœåã¯ãã®ãããã¯ã«é¢ããäœåã®äžã§æãè峿·±ããã®ã§ãã 翻蚳ãæäŸããŸãã
翻蚳ã§ã¯ãããã·ã¥æšæºã®å
ã®ååãä¿æãããŸãããGOSTããšããååã¯ã1994å¹Žã®æšæºGOST R 34.11-94ãæãããGOST Rãã¯ãç ç©¶ã§ç ç©¶ãããGOST R 34.11-2012ã¢ã«ãŽãªãºã ã瀺ããŸãã
äœåã¯ããã®èè
ã®èš±å¯ãåŸãŠãã·ã¢èªã§ç¿»èš³ããã³åºçãããŠããŸããæ³šé
GOST Rã¯ããã·ã¢ã®ããã·ã¥é¢æ°ã®æšæºã§ãã ãã®äœåã¯ãGOST Rã®ããã€ãã®çµæã瀺ããŠããŸãã æ»æã¯9.5ã©ãŠã³ãã§ææ¡ããã
2,176æäœã®é¢åããš
2,128ãã€ãã®ã¡ã¢ãªèŠä»¶ããããŸãã ãã®æ»æã«åºã¥ããŠã
ãã£ã¹ã¯ãªãããŒã¿ãŒãææ¡ãããŠããŸãïŒ
translãïŒDiscriminatorã«æ³šæããŠãã ãã -æ»æãããæ©èœããã©ã³ãã ã§åçã®å¯èœæ§ã®ããæ©èœãšåºå¥ã§ããã¢ã«ãŽãªãºã ã§ãïŒã ããã«ãGOST Rã®512ãããããŒãžã§ã³ã®
k-è¡çªãæ§ç¯ããæ¹æ³ãæç€ºãããŸããããã¯ãGOST Rã§äœ¿çšãããæ§é ã®åŒ±ç¹ã瀺ããŠããŸããç§ãã¡ã®ç¥ãéãããããã¯GOST Rã®åæã®æåã®çµæã§ãã
ããŒã¯ãŒã ïŒããã·ã¥é¢æ°ãGOST RããªããŠã³ãæ»æããã«ãã³ãªãžã§ã³ã
1.ã¯ããã«
ããã·ã¥é¢æ°ã¯æå·åã§éèŠãªåœ¹å²ãæãããé»å眲åãèªèšŒãããŒã¿æŽåæ§ãªã©ã®å€ãã®ã¢ããªã±ãŒã·ã§ã³ã§äœ¿çšãããŸãã MD5ããã³SHA-1ã¢ã«ãŽãªãºã ã®ãããã³ã°[1ã2]以æ¥ãæå·äœæè
ã¯æ°žç¶çã§å¹ççãªããã·ã¥é¢æ°ãæ¢ãç¶ããŠããŸããã GOSTã¢ã«ãŽãªãºã ã®åŸç¶ã§ããGOST Rã¯ããã·ã¢ã®ããã·ã¥æšæºã§ã[3]ã Whirlpool [4]ãšæ§é ã䌌ãŠããŸãããå§çž®æ©èœã§AESã®ãããªãããã¯æå·ã䜿çšããŸãã
ãªããŠã³ãæ»æã¯ãé åãšãããã¯æå·ã®äž¡æ¹ã«åºã¥ããŠããã·ã¥ã¢ã«ãŽãªãºã ã®è¡çªãèŠã€ããããã«äœ¿çšã§ããèªç±åºŠã®ããæè¡ã§ãã ãã®æè¡ã¯ãã¡ã³ãã«ãã«ãã£ãŠæåã«ææ¡ãããåãæšãŠãããã¯ãŒã«ããŒã«ããã³ã°ã¬ã¹ãã«ã¢ã«ãŽãªãºã ã®è¡çªæ€çŽ¢æ»æãçæããŸã[5]ã å®çŸ©æžã¿ã®åãæšãŠãããå·®åã«äžèŽããå€ã®ãã¢ãå¹ççã«æ€çŽ¢ããããšãç®çãšããŠããŸãã æ€çŽ¢æé ã¯ãå
éšïŒã€ã³ããŠã³ãïŒãã§ãŒãºãšå€éšïŒã¢ãŠãããŠã³ãïŒãã§ãŒãºã®2ã€ã®ãã§ãŒãºã«åãããŠããŸãã å
éšãã§ãŒãºã§ã¯ãæ»æè
ã¯å©çšå¯èœãªèªç±åºŠãæå€§éã«æŽ»çšããéå§ç¹ãšããŠäœ¿çšãããå
éšãã§ãŒãºã®åãæšãŠãããå·®åã®ãã¹ãæºãââãå€ã®ãã¢ã倿°çæããŸãã ãã®åŸãå€éšãã§ãŒãºã§ã¯ããããã®éå§ç¹ããã§ãã¯ãããå€éšãã§ãŒãºã®åãæšãŠããã埮åã®ãã¹ãæºãââãå€ã®ãã¢ãèŠã€ãããŸãã
Lamberger et alã[6]ã§ãã®æè¡ã匷åããã¯ãŒã«ããŒã«ã®æ¹åãããçµæãåŸãŸããã ããŒã¹ããŒã ã§å©çšå¯èœãªèªç±åºŠã¯ããªããŠã³ãæ»æã®å
éšãã§ãŒãºãæå€§2ã©ãŠã³ããŸã§æ¡åŒµããããã«äœ¿çšãããŸãã [6]ã®æè¯ã®çµæã¯ãè€é床ã
2,176ã® 9.5ã©ãŠã³ãã®å§çž®é¢æ°ã®ã»ãŒè¡çªã§ãã æ¬¡ã«ããã®çµæã䜿çšããŠãã¯ãŒã«ããŒã«ã¢ã«ãŽãªãºã ã®å®å
šãª10ã©ãŠã³ãå§çž®é¢æ°ã®æåã®èå¥ã¢ã«ãŽãªãºã ãæ§ç¯ããŸããã åæã«ãGilbert et alãã¯ã[7]ã§ãªããŠã³ãæ»æçšã®Super-Sboxãã¯ãããžãŒãææ¡ããŸãããããã§ã¯ã2ã©ãŠã³ãã®AESã®ãããªå€æãæ¡åŒµçœ®æã®1ã€ã®ã¬ãã«ãšèŠãªãããŸããã ããã«ããªããŠã³ãæ»æã¯ãAESããã³AESã«äŒŒããããã¯æå·[8ã9]ãããã³ARXæå·ãåæããããã«ã䜿çšã§ããŸãïŒ
translãïŒARXã¯Add-Rotate-Xorã®ç¥ã§ããããã®æäœã¯ARXæå·ã®åºæ¬ïŒã [10]ã æè¿ãDuc et alãã¯é©å¿ãªããŠã³ãæ»ææè¡ã䜿çšããŠã[11]ã§Keccakã®åŸ®åç¹æ§ãæ§ç¯ããŸããã
ããã·ã¥é¢æ°ã®è¡çªãèŠã€ãã代ããã«ãJouxã¯[12]ã§å€éè¡çªãæ§ç¯ããæ¹æ³ãææ¡ããŸããã 圌ã¯ãå埩ããã·ã¥é¢æ°ã®å Žåããã«ãã³ãªãžã§ã³ã®æ€çŽ¢ã¯ãåäžã®ã³ãªãžã§ã³ã®æ€çŽ¢ãããè€éã§ã¯ãªãããšã瀺ããŸããã ã»ãšãã©ã®å Žåããã®æ¹æ³ã䜿çšããŠãããã·ã¥é¢æ°ã®æ§é ã®å®å®æ§ãåæã§ããŸãã
1.1ã ç§ãã¡ã®è²¢ç®
GOST RãšWhirlpoolæ§é ã¯é¡äŒŒããŠããããã[6]ã§Whirlpoolåæã«äœ¿çšããããªããŠã³ãæ»æã¯GOST Rã«ãé©çšã§ããŸãããã ããGOST Rã¯AESã®ãããªæ§é ã§ShiftRowsæäœã®ä»£ããã«è¡å眮æã䜿çšããŸãã ãã®éãããã倧ããªè匱æ§ã«ã€ãªããããšã瀺ããŸãã
ãã®è«æã§ã¯ãGOST Rã®åæã®æåã®çµæã瀺ããŸããããæ£ç¢ºã«ã¯ã[6]ã«ç€ºãããæ¹æ³ãšåæ§ã®ãªããŠã³ãæ»ææ¹æ³ã䜿çšããŠã4.5ã5.5ã7.5ãããã³9.5ã®è¡çªæ€çŽ¢æ»æãååŸããŸããGOST Rå§çž®æ©èœã©ãŠã³ãïŒGOST Rå§çž®æ©èœã«å¯Ÿããè¡çªæ€çŽ¢æ»æã衚ã«ç€ºããŸãã 1.ããã«ã9.5ã©ãŠã³ãã®æ»æã10ã©ãŠã³ãã®åŒå¥åšã«å€æã§ããããšã瀺ããŸããã ããã«ãGOST Rã®ãã«512ãããããŒãžã§ã³ã®ãã«ãã³ãªãžã§ã³ãæ§ç¯ããæ¹æ³ãææ¡ããŸããããã®çµæã¯ãGOST Rã§äœ¿çšãããæ§é ãçæ³çã§ã¯ãªãããšã瀺ããŠããŸãã
ã¿ãã 1. GOST Rã®å§çž®æ©èœã®èŠçŽçµæãæ¬åŒ§å
ã«ç€ºãããŠãããªãœãŒã¹ã®åŒ·åºŠã¯ãäºåã«èšç®ãããããŒãã«ã䜿çšãã倿Žãããæ»æãæããŸããã©ãŠã³ã | åŽåæå
¥/èšæ¶ | çš®é¡ | 説æ |
4,5 | 2 64/2 16 | è¡çª | ã»ã¯ã·ã§ã³3.3 |
5.5 | 2 64/2 64 | è¡çª | ã»ã¯ã·ã§ã³3.4 |
7.5 | 2 128/2 16 | è¡çª | ã»ã¯ã·ã§ã³3.5 |
9.5 | 2 240/2 16 ïŒ2 176/2 128 ïŒ | è¡çª | ã»ã¯ã·ã§ã³3.6 |
1.2ã ä»äºå
容
ãã®äœæ¥ã®æŠèŠïŒç¬¬2ç« ã§GOST Rã®ããã·ã¥é¢æ°ã«ã€ããŠç°¡åã«èª¬æããŸããæ¬¡ã«ã第3ç« ã§ãªããŠã³ãæ»æã®è©³çްã説æããŸãã èå¥åšã«ã€ããŠã¯ã第4ç« ã§èª¬æããŸãã第5ç« ã§ã¯ããã«ãã³ãªãžã§ã³ãæ§ç¯ããæ¹æ³ã玹ä»ããŸãã æåŸã«ã第6ç« ã§äœæ¥ããŸãšããŸãã
2. GOST Rã®ããã·ã¥é¢æ°
GOST Rã¯ãã·ã¢ã®ããã·ã¥æšæºã§ã[3]ã 512ãããã®ã¡ãã»ãŒãžãããã¯ãåŠçãã512ãŸãã¯256ãããã®ããã·ã¥å€ãèšç®ããŸãã
lãããã®ã¡ãã»ãŒãžã¯ãæåã«512ãããã®åæ°ã«ããã£ã³ã°ãããŸãã ã¡ãã»ãŒãžã®æåŸã«1ãããã远å ãããŸãã ãã®åŸã«512-1-ïŒ
l mod 512ïŒãŒãããããç¶ããŸãã
M =
M t ||ãšãã
M t -1 || ... ||
M 1ã¯ã远å åŸã®
tãããã¯ã§æ§æãããã¡ãã»ãŒãžã§ãããã°ãšã³ãã£ã¢ã³åœ¢åŒã§è¡šç€ºãããŸãã æ¬¡ã«ãå³ã«ç€ºãããã«ã 1ã
H ïŒ
M ïŒã®èšç®ã¯æ¬¡ã®ããã«èª¬æã§ããŸãã
å³ 1. GOST Rã®ããã·ã¥é¢æ°
ããã§ã
IVã¯äºåã«æ±ºå®ãããåæå€ã§ãã

ãªã³ã°ã§ã®å ç®æäœã瀺ããŸã

ã
g N ïŒ
h ã
m ïŒã¯ãGOST Rã¢ã«ãŽãªãºã ã®å§çž®é¢æ°ã§ããã512ããããããã¯æå·ã«åºã¥ããŠãããæ¬¡ã®ããã«èšç®ãããŸãã

GOST Rã§äœ¿çšããããããã¯æå·
Eã¯ã64ãã€ãã®ç¶æ
ïŒ8 x 8é
åãšããŠè¡šãããŸã
-GF ïŒ2ïŒãã£ãŒã«ãã§ã¯64 x 64ãšããŠè¡šãããããšããããŸãïŒãšã©ãŠã³ãããŒãæŽæ°ããAESããªã¢ã³ãã§ã12ã©ãŠã³ããå®è¡ããŸãã åã©ãŠã³ãã§ã¯ã次ã®ããã«ã©ãŠã³ã倿
r iãå®è¡ããããšã§ç¶æ
ãæŽæ°ãããŸãã

ã©ãŠã³ã倿ã¯ä»¥äžã§æ§æãããŸã
- ããŒãã«ã®çœ®æãåã¹ããŒã¿ã¹ãã€ãã«åå¥ã«é©çšãããéç·åœ¢å€æSã®ã¬ãã«ã
- ãã€ãé åP ãç¶æ
è¡åã®èŠçŽ ãäžŠã¹æ¿ããã
- ç·åœ¢å€æLãããã¯ãåã¹ããŒã¿ã¹ã©ã€ã³ã®å³åŽã§ããã£ãŒã«ãGF ïŒ2ïŒã®64 x 64ãããªãã¯ã¹Aã«ããç¬ç«ããä¹ç®ã§ãã
- æŒç®X [ k i +1 ]ã¯ãæŒç®XORã«ãã£ãŠç¶æ
ã«ã©ãŠã³ãããŒk i +1ã®éãåãããå®è¡ããŸãã
ã©ãŠã³ãéµ
k iã¯æ¬¡ã®ããã«èšç®ãããŸãã

ããã§ã
C iã¯GOST Rã¢ã«ãŽãªãºã ã®å®æ°ã§ãããåæå€
k 1ã¯æ¬¡ã®ããã«å®çŸ©ãããŸãã

ç¶æ
ãæŽæ°ããå€æã®æåŸã®ã©ãŠã³ãã®åŸããããã¯æå·
Eã®åºåå€ã以åã®ç¶æ
å€
h j -1ããã³ã¡ãã»ãŒãžãããã¯
M jã¯ãå§çž®é¢æ°ã®åºåå€ãšããŠXORæŒç®ã«ãã£ãŠçµåãããŸãã
ã©ãŠã³ã倿
r iã®çµæã
R i +1ãšããŠã倿åŸã®äžéç¶æ
S ã
P ãããã³
Lããããã
R i S ã
R i P ãããã³
R i LãšããŠç€ºããŸãã åæç¶æ

ã
3. GOST Rå§çž®æ©èœã«å¯ŸãããªããŠã³ãæ»æ
ãªããŠã³ãæ»æã¯ãMendel et alã[5]ã«ãã£ãŠæåã«ææ¡ãããããã·ã¥é¢æ°è§£ææè¡ã§ãåãæšãŠãããã©ãŠã³ãã§GrÞstlãšWhirlpoolãæ»æããŸãã ãã®æè¡ã®äž»ãªã¢ã€ãã¢ã¯ãå©çšå¯èœãªèªç±åºŠã䜿çšããŠå·®åãã¹ãæ§ç¯ããäœã確çã§ãã©ã°ã¡ã³ããäžèŽãããããšã§ãã éåžžãããã¯ãäžéäžèŽãå«ãå
éšãã§ãŒãºãšããã®åŸã®ç¢ºçè«çãªå€éšãã§ãŒãºã§æ§æãããŸãã
ãªããŠã³ããã¯ãããžãŒã䜿çšããŠã4.5ããã³5.5ã©ãŠã³ãã®GOST Rå§çž®é¢æ°ã®è¡çªãæ€åºããããã«[6]ã®ããã«ããŒæ¡åŒµã¹ããŒã ã®å©çšå¯èœãªèªç±åºŠã䜿çšããŠã7.5ããã³9.5ã©ãŠã³ãã
3.1ã å
ã®ãªããŠã³ãæ»æ
ãªããŠã³ãæ»æã§ã¯ãå§çž®é¢æ°ã§äœ¿çšããããããã¯æå·ãŸãã¯ããã·ã¥é¢æ°ã®äžŠã¹æ¿ãã3ã€ã®ã³ã³ããŒãã³ãã«åå²ãããŸãã
Eããããã¯æå·ãšãããšã

ã ãªããŠã³ãæ»æã¯2ã€ã®ãã§ãŒãºã«åããããŸãã
- å
éšãã§ãŒãº ïŒãã®ãã§ãŒãºã¯ã E inã§éžæãããããã€ãã®å
¥å/åºåã®éãããå§ãŸããé æ¹åããã³éæ¹åã«åç·ã¬ãã«ãäŒæ¬ããŸãã æ¬¡ã«ãå¿
èŠãªå·®ãæºããã1ã¬ãã«ã®è¡šçœ®æåŸã®å·®ã«å¯Ÿå¿ããå®éã®å€ã®ãã¹ãŠã®å¯èœãªãã¢ãçæãããŸãã ãããã®å®éã®å€ã®ãã¢ã¯ãå€éšãã§ãŒãºã®éå§ç¹ã§ãã
- å€éšãã§ãŒãº ïŒå
éšãã§ãŒãºã®äžèŽãã¢ã¯ã E fwããã³E bwãä»ããé æ¹åããã³éæ¹åã®èšç®ã§äœ¿çšãããç®çã®è¡çªãŸãã¯è¡çªã«è¿ãç¶æ
ãååŸããŸãã éåžžã E fwããã³E bwã¯ç¢ºçãäœããããããå€ãã®éå§ç¹ãååŸããããã«å
éšãã§ãŒãºãç¹°ãè¿ãå¿
èŠããããŸãã
3.2ã ãªããŠã³ãæ»æã®äºåèšç®
GOST Rã¢ã«ãŽãªãºã ã®ãªããŠã³ãæ»æã«ã€ããŠèª¬æããåã«ãç·åœ¢å€æ
Lã®ããã€ãã®ããããã£ãšå§çž®é¢æ°ã®è¡šåœ¢åŒã®çœ®æã«ã€ããŠç°¡åã«èª¬æããŸãã
- Lã® å·®ã®äŒæ ïŒ Lã¯ç·åœ¢å€æã§ããããã Lã®ç¹å®ã®å
¥åå·®ã¯ç¹å®ã®åºåå·®ã«ã€ãªãããŸãã Lã¯åã¹ããŒã¿ã¹ã©ã€ã³ã«ç¬ç«ããŠäœçšãããããç¹å®ã®ã©ã€ã³ã®åºåã®å·®ã¯ããã®ã©ã€ã³ã®å
¥åã®å·®ã®ã¿ã«äŸåããŸãã æååã®ã¢ã¯ãã£ããã€ãã1ã€ããå Žåã L倿ã¯ãã¢ã¯ãã£ããã€ãã®äœçœ®ã«é¢ä¿ãªããåžžã«æ£æ¹åãšéæ¹åã®äž¡æ¹ã§8ã¢ã¯ãã£ããã€ãã«ãªããŸãã
- 埮åç¹æ§ S ïŒç¹å®ã®
ãå¹³çã®è§£æ±ºçã®æ°

0ã2ã4ã6ã8ãããã³256ã®ã¿ãããããããã38235ã22454ã4377ã444ã25ãããã³1ã®é »åºŠã§çºçããŸãã å¹³åããŠãã©ã³ãã ã«éžæãããå·®åïŒ
a ã
b ïŒã«ã€ããŠã¯ãè§£ãšããŠ1ã€ã®å€ãèŠã€ããããšãæåŸ
ã§ããŸãã ãŸãã256 x 256ã®å
¥åºåã®å·®ã®è¡šã¯ãããããªèšç®ã§è§£æ±ºçãèŠã€ããã®ã«åœ¹ç«ã¡ãŸãã
3.3ã GOST R 4.5ã©ãŠã³ãå§çž®æ©èœã®è¡çªæ€åº
ãã®ã»ã¯ã·ã§ã³ã§ã¯ã4.5ã©ãŠã³ãã«åãæšãŠãããGOST Rã¢ã«ãŽãªãºã ã®å§çž®æ©èœã«å¯ŸãããªããŠã³ãæ»æã®äœ¿çšã«ã€ããŠèª¬æããŸãã æ»æã®äžå¿ã¯ã次ã®äžé£ã®ã¢ã¯ãã£ããªSããã¯ã¹ãæã€4ã©ãŠã³ãã®å·®åãã¹ã§ãã

å³ 2. GOST Rã®4.5ã©ãŠã³ãã®å§çž®æ©èœã«å¯Ÿããæ»æã®æŠç¥å³ãã¢ã¯ãã£ãã¹ããŒã¿ã¹ãã€ãã¯é»ã§åŒ·èª¿è¡šç€ºãããŸãããªããŠã³ãæ»æã§ã¯ãäž»ã«ãããã¯æå·
Eã3ã€ã®ãµãæå·ã«åå²ããŸã

ã å³ã«ç€ºãããã«ã 2ãå·®åãã¹ã®æããªãœãŒã¹ãæ¶è²»ããéšåã¯ãå
éšãã§ãŒãºã«é ãããŠããŸãã å©çšå¯èœãªèªç±åºŠã䜿çšããŠã
Eã®å·®åçµè·¯ãä¿å
ããŸãã
3.3.1ã å
éšæ®µé
å
éšãã§ãŒãºã®æåã®ã¹ãããã§ã¯ã
R 2 Pãš
R 3 Lã®ã¹ããŒãžã§åæã«8ãã€ãã®å·®ããéå§ã
ããããã
R 3ãš
R 3 Sã«ååŸã«ç§»åããŸãïŒå³2ãåç
§ïŒã ã»ã¯ã·ã§ã³3.2ã§èª¬æããæäœ
Lã®éãã®äŒæç¹æ§ã«åŸã£ãŠã
R 3ãš
R 3 Sã®äž¡æ¹ã§å®å
šã«ã¢ã¯ãã£ããªç¶æ
ãååŸããŸã
ãå
éšãã§ãŒãºã®2çªç®ã®ã¹ãããã§ã¯ãå
¥å/åºåã®å·®ã®é©åãªçµã¿åãããèŠã€ããããã«ã
r 3ã®ã¬ãã«
Sã§ã®äžèŽãæ€çŽ¢ããŸãã ã»ã¯ã·ã§ã³3.2ã«ç€ºãããã«ãç¹å®ã®å·®åçµè·¯ã«å¯ŸããŠå¹³åã§1ã€ã®ãœãªã¥ãŒã·ã§ã³ãèŠã€ãããšäºæ³ãããŸãã åèšã§
2,128ã®ç°ãªãå·®åãã¹ãããã
R 3ãš
R 3 Sã®å®éã®å€ã
2,128ãè¶
ããªãããšã¯æ³šç®ã«å€ããŸã
ã k 3ã«ã¯ä»»æã®å€ãèšå®ã§ãããããéå§ç¹ã®æå€§æ°ã¯2
128 + 512 = 2
640ã§ãã
3.3.2ã å€çž
å€éšãã§ãŒãºã§ã¯ãå
éšãã§ãŒãºã§éçºãããéå§ç¹ã䜿çšãããããã®å€ãé æ¹åããã³éæ¹åã«åŠçããŸãã å³ã«ç€ºãããã«ã å³2ã«ç€ºãããã«ã
R 2 Pãš
R 3 Lã®éãã¯
ããããã
R 1ãš
R 5 Pã®æåã®åã®éãã®ã¿ã«ã€ãªãããŸãã
åã®æé ã§çæãããå€ã䜿çšããŠã4.5ã©ãŠã³ãã«åãæšãŠãããGOST Rå§çž®é¢æ°ã®è¡çªãç°¡åã«æ§ç¯ã§ããŸãã 以æ¥

ã
hãš
kã®å€ãåãå Žåã
mãš
E ïŒ
k ã
m ïŒã®åãå·®ã¯åžžã«è¡çªã«ã€ãªãããŸãã å€éšãã§ãŒãºã§çæãããå€ã®ãã¢ã®å Žåãå·®ã¯2
-64ã®ç¢ºçã§
mãš
E ïŒ
k ã
m ïŒã§åçã§ãã ãããã£ãŠãè¡çªãæ§ç¯ããããã«çŽ2
64ã®éå§ç¹ãçæããå¿
èŠããããŸãã ããã®è€éãã¯çŽ2
64ã§ãã 眮æããŒãã«ã«ã¯256 x 256ã®å
¥åºåã®å·®åããŒãã«ã®ã¿ãä¿åããå¿
èŠããããããã¡ã¢ãªèŠä»¶ã¯2
16ãã€ãã®ã¿ã§ãã
3.4ã 5.5ã©ãŠã³ãå§çž®æ©èœGOST Rã®è¡çªæ€åº
é«åºŠãªäº€ææè¡[7]ã䜿çšããŠãå
éšãã§ãŒãºã«1ã©ãŠã³ãã远å ããããšã§ã4.5ã©ãŠã³ãã®çµæã匷åã§ããŸãã ããã«ãããGOST Rã®5.5ã©ãŠã³ãã®å§çž®æ©èœãæ»æãããŸãããã®æ»æã®å€éšãã§ãŒãºã¯ã4.5ã©ãŠã³ãã®æ»æãšåãã§ãããã¢ã¯ãã£ããªSããã¯ã¹ã®æ°ããã·ãŒã±ã³ã¹ã¯æ¬¡ã®ãšããã§ãã

å³ 3. 5.5ã©ãŠã³ãå§çž®æ©èœGOST Rã«å¯Ÿããæ»æã®å
éšãã§ãŒãºå³ã«ç€ºãããã«ã å³ïŒã«ç€ºãããããã«ã
 ïŒ ïŒ³ã®åè¡ã®å€ã¯ã
 ïŒã®å¯Ÿå¿ããåã®ã¿ã«äŸåããã ã€ãŸãã
R 3ã®æ®µéã§åå€ã®ãã¢ãç¥ã£ãŠããã°ã
k 4ãããã£ãŠããã®ã§ã察å¿ããè¡
R 4 Sã®å€ãèšç®ã§ããŸã
ã ãããã£ãŠãæ¡åŒµçœ®æãšããŠãåå
R 3ãšå¯Ÿå¿ããè¡
R 4 Sã®éã®å¯Ÿå¿ãèæ
®ããããšãã§ããŸã
ã ã©ã³ãã ã«æå®ãããå
¥åãšåºåã®å·®ãæã€æ¡åŒµçœ®æããšã«ãå¹³åã§1ã€ã®å®éã®å€ãèŠã€ãããšäºæ³ãããŸãã
次ã«ã5.5ã©ãŠã³ãã®æ»æã«ã€ããŠè©³ãã説æããŸãã
3.4.1ã å
éšæ®µé
5.5ã©ãŠã³ãã®GOST Rã«å¯ŸãããªããŠã³ãæ»æã®å
éšãã§ãŒãºã¯ã次ã®ããã«èª¬æã§ããŸãã
- R 2 Pã®æåã®åã®8ã¢ã¯ãã£ããã€ãã®å·®ããå§ããŠã R 3ã«é²ã¿ãŸãã
- ããããã®ç¬ç«ããæ¡åŒµçœ®æã«ã€ããŠããã®å
¥åã®éããç¥ã£ãŠãå
¥åå€ã®2 64ãã¢ãã¹ãŠãåŠçããåæ¹çœ®æãèšç®ããŸãã ããã«ãããåºåå·®ã®2 64åã®å€ãåŸãããŸãã åŸãããåå·®ã«ã€ããŠãããã«ã€ãªããå
¥åå€ã®å¯Ÿå¿ãããã¢ãä¿åããŸãã ãã®ãã§ãŒãºã«ã¯ãçŽ2 64ã®æäœãšã¡ã¢ãªãå¿
èŠã§ãã
- R 4 Lã® 8ãã€ãã®å·®ããšã«ã R 4 Sã«æ»ããŸãã å¿
èŠãªéãããããã©ããã以åã«ä¿åããå€ããã¹ãŠãã§ãã¯ããŸãã
R 2 Pã¹ããŒãžã§ä»ã®å·®ç°ãéžæããŠãå·®ç°ãæºããããå€ãã®å®éã®å€ãååŸã§ããŸãã
R 2 Pã®å
¥åã®å·®ã«ã€ããŠã¯ãçŽ2
64ã®éå§ç¹ãèŠã€ãããšäºæ³ãããŸãã
3.4.2ã å€çž
å€éšãã§ãŒãºã¯4.5ã©ãŠã³ãæ»æãšåãã§ã2
64ã®éå§ãã€ã³ããå¿
èŠã§ãã ãããã£ãŠã5.5ã©ãŠã³ãã®è¡çªãæ€çŽ¢ããããã®è€éããšã¡ã¢ãªèŠä»¶ã¯
ãããã 2
64ã§ãã
3.5ã 7.5ã©ãŠã³ãå§çž®é¢æ°GOST Rã®è¡çªæ€åº
[6]ã®ããã«ãããŒæ¡åŒµã¹ããŒã ã®èªç±åºŠã䜿çšããŠå
éšã©ãŠã³ãã«3ã©ãŠã³ãã远å ããããšã«ããã4.5ã©ãŠã³ãã®çµæãæ¹åã§ããŸãã äž»ãªã¢ã€ãã¢ã¯ãå
éšãã§ãŒãºã2ã€ã®ãµããã§ãŒãºã«åé¢ããããšã§ãã ãããã®2ã€ã®ãµããã§ãŒãºã¯ãããŒæ¡åŒµæé ã®èªç±åºŠãæå€§éã«æŽ»çšããããšã§ãåŸã§çµã¿åãããããšãã§ããŸãã ãã®çµæã7.5ã©ãŠã³ãã«åãæšãŠãããGOST Rå§çž®é¢æ°ã®è¡çªãçºçããŸãã
æ¡åŒµå
éšãã§ãŒãºã§ã¯ã次ã®ã¢ã¯ãã£ããã€ãã®ã·ãŒã±ã³ã¹ã䜿çšããŸãã

次ã«ãå
éšçµè·¯ã¯ãå·®åçµè·¯ã«å¯Ÿå¿ããå
¥åå€ãèŠã€ããããã«2ã€ã®ãµããã§ãŒãºã«åå²ãããŸãïŒå³4ïŒã æåã®ãµããã§ãŒãºã§ã¯ãã©ãŠã³ã1-2ããã³4-5ã®äžèŽãæ€çŽ¢ããŸãã ãããŠã2çªç®ã®ãµããã§ãŒãºã§ã¯ãã©ãŠã³ãããŒã®å€ãéžæããŠèªç±åºŠã䜿çšãã
r 2ãš
r 4ã®éã®ã¢ã¯ãã£ãç¶æ
ã®å€ãçµã¿åãããŸãã
å³ 4. 7.5ã©ãŠã³ãå§çž®é¢æ°GOST Rã®è¡çªæ€çŽ¢ã®å
éšãã§ãŒãº3.5.1ã å
éšãµããã§ãŒãº1
ãã®ãµããã§ãŒãºã§ã¯ãã©ãŠã³ã1-2ããã³4-5ã®äžèŽæ€çŽ¢ãå®è¡ããŸããããã¯æ¬¡ã®ããã«èª¬æã§ããŸãã
1.ã©ãŠã³ã1-2ïŒ
- R 3ã®æåã®åã®8ãã€ãã®å·®ããéå§ãã R 2 Sãšå察æ¹åã«ç§»åããŸãã
- æåã®åR 1 Pã®8ãã€ãã®å·®ããšã«ã R 2ã«é²ã¿ãŸãã R 1 Pã®å·®ã«ã¯2 64åã®ç°ãªãå€ãããªãããã R 2ã«ã¯ 2 64åã®å·®ãåŸãããšãã§ããŸãã ãããã³ã°åŸãå·®åããŒã¿ã¯çŽ2 64ã®å®éã®å€ã«ãªããŸãã ãã ããåè¡ã«å¯ŸããŠåå¥ã«äžèŽããæ€çŽ¢ãå®è¡ããè¡ã«å¯ŸããŠ2 8åã®æå¹ãªå€ãååŸã§ããŸãã ãããã£ãŠãå·®åãã¹ã«å¯Ÿå¿ãã2 64åã®å®æ°å€ãçæããè€éãã¯ã2 8åã®ã©ãŠã³ã倿ã®ã¿ã§ãã
2.ã©ãŠã³ã4-5ïŒã©ãŠã³ã1-2ãšåãããšãè¡ããŸãã
çŸåšãçŽ2
9åã®ã©ãŠã³ã倿ãšããé¢åãªæ»æã®æåã®ãµããã§ãŒãºãå®è¡ããåŸã
R 2 Sãš
R 5ã®åè£ã2
64åãããŸãã
3.5.2ã å
éšãµããã§ãŒãº2
2çªç®ã®ãµããã§ãŒãºã§ã¯ãããŒæ¡åŒµã¹ããŒã ã®èªç±åºŠã䜿çšããŠã
R 2 Sã®éããš
R 5ã®éããããã³å®éã®å€ãçµåããå¿
èŠããããŸãã ããã¯ãæ¬¡ã®æ¹çšåŒãè§£ããªããã°ãªããªãããšãæå³ããŸãã

ã§
R 2 Sã® 2
64åã®åè£ãš
R 5ã® 2
64åã®åè£ã«ã€ããŠã
k 3 ã
k 4 ãããã³
k 5ã®å€ã®512èªç±åºŠãèæ
®ããŠã2
64åã®è§£ãèŠã€ãããšäºæ³ãããŸãã
LP ïŒ
R 2 S ïŒ=
R 2 Lããã³ïŒ
X [
k 5 ]ïŒ
-1 =
X [
k 5 ]ãªã®ã§ã次ã®ããã«ïŒ8ïŒãæžãæããããšãã§ããŸãã
Pãš
Sã®é åºã¯ãã€ã§ã倿Žã§ããããã

æ¬¡ã®æ¹çšåŒãåŸãããŸãã

衚èšã玹ä»ããŸã

ããã³
T =
P -1 L -1 ïŒ
R 5 ïŒã®å Žåãäžèšã®åŒã¯æ¬¡ã®ããã«æžãæããããšãã§ããŸãã

ãã®æ¹çšåŒã®è§£ã¯ã
R 2 Sãš
R 5ã®å·®ãšå€ãçµã¿åãããããšãšåçã§ãã æ¹çšåŒãè§£ãããã«äœ¿çšããæ¹æ³ã以äžã«èª¬æããŸãã
å³ 5. 7.5ã©ãŠã³ãå§çž®æ©èœGOST Rã®è¡çªãèŠã€ããããã®å
éšãµããã§ãŒãº2æ»æR 2 Lãš
R 4 Sã®å·®ã¯ãµããã§ãŒãº1å
ã§åºå®ãããããã
R 2 *ãš
Tã®å·®ãåºå®ãããŸãã ãŸãããµããã§ãŒãº1ã§çæãããç¶æ
R 2 Sããã³
R 5ã® 2
64å€ã¯
ããããã
R 2 *ããã³
Tã® 2
64å€ã«çŽæ¥ã€ãªãããŸãã ããã§ãå³15ã«ç€ºãããã«ãåè¡ã«ã€ããŠåå¥ã«ïŒ15ïŒãè§£ãããšãã§ããŸãã 5ãæ¬¡ã®ããã«èª¬æã§ããŸãã
1.
R 2 Sãã
R 2 *ã®8ãã€ãã®å·®ãš2
64å€ãèšç®ãã
R 5ãã
Tã®8ãã€ãã®å·®ãšå¯Ÿå¿ãã2
64å€ãèšç®ããŸãã æ¹çšåŒã1è¡ãã€è§£ãããšãã§ããããã
R 2 *ãš
Tã®å€ã®æååãèšç®ããŠä¿åããã ãã§ãã
ãã®ã¹ãããã®è€éããšã¡ã¢ãªèŠä»¶ã¯ã2 65ã§ã¯ãªã2 9ã§ãã2. æåã®è¡R 3 *ã® 2 64åã®å€ãã¹ãŠã«ã€ããŠãæ¬¡ã®æé ãç¹°ãè¿ããŸãã- R 3 *ã®å·®ã¯æ¢ç¥ã§ãããããæåã®è¡R 3 *ã®éžæãããå€ã«ã€ããŠãé æ¹åã«æåã®è¡R 3 Lã®å€ãšæåã®è¡R 4ã®å·®ãèšç®ããŸãã
- R 4 R 4 S R 4 . R 3 L , k 4 .
- k 3 * , R 2 * , R 4 S T . R 2 * , R 4 S 2 64 , . , , .
3.ãã®ã¹ãããã§ã¯ãåã®ã¹ãããã§ååŸãã察å¿ããR 2 *ãšTã® 2ã8è¡ç®ã®å€ãçµã¿åãããŸããè¡ããšã«ãããŒk 3 *ã®å¯Ÿå¿ããè¡ã®2 64åã®å€ãã¹ãŠã«å¯ŸããŠåå¥ã«åŸ¹åºçãªæ€çŽ¢ãå®è¡ãããŸãã 64ãããå€ãæ¥ç¶ãã2 64åã®ããŒå€ããã§ãã¯ããããšã«ãããåžžã«è§£æ±ºçãèŠã€ããããšãã§ããããšã«æ³šæããŠãã ããããã¹ãŠã®ãããã®ã¹ãããã®åŸãæã
ã¯2ã€ã®ãåŸã64ã®ãªã³ã¯ã察å¿ããå€ãR 2 *åã³Tããã€ãŸãã2 64 å€éšãã§ãŒãºã®éå§ç¹ãè€éãã¯çŽ2 128 2ã«ã€ããŠã®ã¡ã¢ãªèŠä»¶ãæã€ã©ãŠã³ãã®å€æã®16ãã€ããå¹³åããŠã2 64ã®è€éããæã€åºçºç¹ãèŠã€ããããšãæåŸ
ãããŸãããµã€ãº2 128ã®ã«ãã¯ã¢ããããŒãã«ãé©çšããããšã§ãã¹ããã3ãã¹ãããã§ããŸããã«ãã¯ã¢ããããŒãã«ã䜿çšãããšãå¹³åè€é床1ã®éå§ç¹ãèŠã€ããããšãã§ããŸãããã ããã«ãã¯ã¢ããããŒãã«ã®æ§ç¯ã®è€éãã¯2,128ã§ãããã¡ã¢ãªèŠä»¶ã¯2,128ãã€ãã§ããR 3ã«ã¯2 64ã®éãããããR 4 Sã«ã¯2 64ã®éããããããšã«æ³šæããŠãã ããã ãR 3ãšR 4 Sã®å·®ã®åºå®ãã¢ã«ã€ããŠã¯ã2 64ã®éå§ç¹ãèŠã€ãããšäºæ³ãããŸãããããã£ãŠãåèšã§ãå€éšãã§ãŒãºã®éå§ç¹ãçæããå¿
èŠãããã®ã¯2 192以äžã§ãã3.5.3ãå€çž
7.5ã©ãŠã³ãæ»æã®å€éšãã§ãŒãºã¯ã4.5ã©ãŠã³ãæ»æã«äŒŒãŠããŸãã7.5ã©ãŠã³ãã§è¡çªãæ€çŽ¢ããæ»æã¯ã次ã®ã¢ã¯ãã£ããã€ãã®ã·ãŒã±ã³ã¹ã䜿çšããŸãïŒ
GOST Rã®å§çž®æ©èœã®7.5ã©ãŠã³ãã®è¡çªãæ€çŽ¢ããè€éãã¯ã2 16ãã€ãã®ã¡ã¢ãªèŠä»¶ã§çŽ2 64 + 64 = 2 128ã§ãã3.6ã 9.5ã©ãŠã³ãå§çž®æ©èœGOST Rã®è¡çªæ€åº
2 192ãè¶
ããéå§ç¹ãååŸã§ããŸããã7.5ã©ãŠã³ãæ»æã®å€éšãã§ãŒãºã«å¿
èŠãªã®ã¯2 64ã ãã§ãã9.5ã©ãŠã³ãã®è¡çªãèŠã€ããæ»æãæ§ç¯ããããã«ãæåã«1ã©ãŠã³ããæåŸã«1ã©ãŠã³ãã远å ããããšã«ãããå€éšãã§ãŒãºãæ¡åŒµã§ããŸãããã®ãããªæ»æã¯ã次ã®äžé£ã®ã¢ã¯ãã£ããã€ãã䜿çšããŸãã
次ã«ã9.5ã©ãŠã³ãæ»æã®å€éšãã§ãŒãºã«ã€ããŠè©³ãã説æããŸãã
å³ 6. 9.5ã©ãŠã³ãã®å§çž®é¢æ°GOST Rã«å¯Ÿããæ»æã®æŠç¥å³3.6.1ãå€çž
7.5ã©ãŠã³ãã®å€é𿻿ãã§ãŒãºãšã¯ç°ãªããããã§ã¯åãæšãŠãããå·®åã䜿çšããŸããå
éšãã§ãŒãºã®å®è¡åŸãçæãããå€ã«ãããå³3ã«ç€ºãããã«ãR 3ãšR 8ã«8ãã€ãã®å·®ãçããŸãã 6.äž¡æ¹åã§åãæšãŠãããå·®åçµè·¯8â1ãžã®å¯Ÿå¿ãèŠã€ãããããã®åãæšãŠãããå·®åãã¹ã®ç¢ºçã¯2 -56ã§ããR 2ãšR 9ã®1ãã€ãã®éãã«ãããR 1ãšR 10ã®ã¢ã¯ãã£ããã€ãã¯åžžã«8ãã€ãã«ãªããŸãããããã£ãŠãå€éšãã§ãŒãºã®ç¢ºçã¯2 -112ã§ãããããã£ãŠã2ã§çæããå¿
èŠããããŸã112åã®åºçºç¹ã9.5ã©ãŠã³ãã«åãæšãŠãããå§çž®é¢æ°ã®è¡çªã§ã¯ãmãšR 10 Pã«åãå·®ãå¿
èŠãªã®ã§ãåèš2 112 + 64 = 2 176ã®éå§ç¹ãçæããå¿
èŠããããŸããã»ã¯ã·ã§ã³3.5ã§èª¬æããããã«ãåŽåæå
¥éã2 64ã§ããåºçºç¹ã1ã€èŠã€ããããšãæåŸ
ãããŸãããããã£ãŠã9.5ã©ãŠã³ãã®è¡çªãæ€åºããè€éãã¯çŽ2 64 + 176 = 2 240ã§ãããã¡ã¢ãªèŠä»¶ã¯2 16ãã€ãã§ãã2,128åã®å€ãæã€ã«ãã¯ã¢ããããŒãã«ã䜿çšããå Žåãè€é床ã¯2,176ã§ã2 128ãã€ãã®ã¡ã¢ãªèŠä»¶ã4. 10ã©ãŠã³ãã®åŒå¥åš
ãã®ç« ã§ã¯ã10ã©ãŠã³ãã«åãæšãŠãããGOST Rå§çž®é¢æ°ã®èå¥åšã瀺ããŸãããæ¬¡ã®ããã«ææ¡ãããã®ã«ããŒãã[7]çš®é¡å€å¥ã説æããããšãã§ããïŒè¡ãã©ã³ãã 颿°ã®ããã«Bã®ãããé åãããã³ã°å
¥åéšå空éã®ãµã€ãºå·®Iãéšå空éã®å€§ããã®åºåå·®ã«Jã®ã¿{maxã®å¿
èŠ
ã2 b㯠/ ïŒIJïŒ}颿°åŒã³åºãã¯ãïŒäžè¬æ§ã倱ãããšãªããæã
ã¯ä»®å®ããI †JïŒãé©çšããããšã«ãã£ãŠLãšX [ K 11] 9.5ã©ãŠã³ãã®åã®çµæã«ãå·®åçµè·¯ã10ã©ãŠã³ãã«æ¡åŒµããŸããã«ãããããããR 11ã¯ãåãæšãŠå·®ã®ç¹ã§å®å
šã«æŽ»æ§ã§ãããå·®R 11ã¯ãäŸç¶ãšããŠ2ã®éšå空éãµã€ãºã«å±ããå
¥åå·®åå§çž®æ©èœã®ã§ãããã64ã®éšå空éã®æ¬¡å
ã«ãã64ãéšå空éãµã€ãº2ã®åºåå·®å128ãã©ã³ãã 颿°ã®å Žåããã®çš®ã®å
¥åãšåºåã®å·®ã®å¯Ÿå¿ãå®å
šã«æ±ºå®ããã«ã¯ã2 512-ïŒ64 + 128ïŒ = 2 320ã®èšç®ãå¿
èŠã§ãããã ãã10ã©ãŠã³ãã«åãæšãŠãããå§çž®é¢æ°ã®å Žåãè€éãã¯ããã2,176ã§ãã¡ã¢ãªèŠä»¶2 16ãŸãã¯2 128ã®ã¡ã¢ãªèŠä»¶2 128ãå§çž®é¢æ°ã«å¿
èŠãªè€éãã¯ãã©ã³ãã 颿°ã®å Žåãããã¯ããã«å°ãªãã§ãããã®ããããã£ã䜿çšããŠãGOST Rã®å§çž®é¢æ°ãšã©ã³ãã 颿°ãåºå¥ã§ããŸãã5. GOST Rããã·ã¥é¢æ°ã®å€éè¡çª
ããã§ãGOST Rããã·ã¥é¢æ°ã®æ§é çå®å®æ§ã«ã€ããŠæ€èšãããã®ã¿ã€ãã®æ§é ã«ã€ããŠãk-è¡çªãæ§ç¯ããæ¹æ³ãææ¡ããŸãããã®å Žåã®è€éãã¯ãçæ³çãªæ§é ã®k-è¡çªãæ§ç¯ããè€éãããã倧å¹
ã«å°ãããªããŸããã€ãŸãããã®ã¿ã€ãã®æ§é ã¯çæ³çã§ã¯ãªãããšã蚌æããŠããŸããnãããã®åºåå€ãæã€çæ³çãªããã·ã¥é¢æ°ã®å Žåãè¡çªãäžãããã¢ã®æ€çŽ¢ã®è€éãã¯çŽ2 n / 2ã§ãããk-è¡çªïŒãã«ãã³ãªãžã§ã³ïŒã®æ€çŽ¢ã§ã¯2 nïŒk -1ïŒ/ kã§ããããããããã¢ã¯ã€ãºè¡çªã«åºã¥ããŠãZhua on Crypto'04 [12]ã¯ãt x 2 n / 2ã®ã¿ã®è€éããæã€å埩æ§é ã«å¯ŸããŠ2 t-è¡çªãæ§ç¯ããæ¹æ³ãææ¡ããŸãããå³ã«ç€ºãããã«ãå³7ã«ç€ºãããã«ãæ»æè
ã¯æåã«tåã®ç°ãªããã¢ã¯ã€ãºè¡çª{ïŒB 1ãB 1 *ïŒãïŒB 2ãB 2 *ïŒã...ãïŒB tãB t *ïŒ}ãçæããŸãããã®åŸãæ»æè
ã¯ãçŽã¡ã«2åä¿¡ããããšãã§ããT -kolliziyuã¿ã€ãïŒB 1ãBã 2ã...ãb tïŒãããã§b iã¯2ã€ã®ãããã¯B iããã³B i *ã®ããããã§ãã
å³ 7. ãžã§ã€ã¹ã®tè¡çªã® ã¹ããŒã 2 ã2 tã¡ãã»ãŒãžã®åœ¢åŒã¯ïŒ b 1ã b 2ã...ã b tïŒã§ããããã§ã b iã¯2ã€ã®ããã㯠B iããã³ B iã® 1ã€ã§ã*GOST Ræ§é ã¯å埩çã§ã¯ãªããšããäºå®ã«ããããããããã®ããã«æ§ç¯ããããšãã§ããŸãkè¡çªããã®æ¹æ³ã¯ã次ã®èŠçŽ ã§æ§æãããŠããŸãã1.å³ã«ç€ºãããã« 8ãh tã®åãå€ã«ã€ãªãã2 tã¡ãã»ãŒãžãçæããŸãã- ããŠã¿ãŸãããH 0ãåæå€ã§ããIVã¢ã«ãŽãªãºã GOST R
- i 1 t :
- B i B i * , g N ( h i -1 , B i ) = g N ( h i -1 , B i *), B i B i * 0 256 || {0, 1} 256 . 2 256 , [13].
- çµæã®2 tã¡ãã»ãŒãžãïŒb 1ã...ãb tïŒã®åœ¢åŒã§ã³ã³ãã€ã«ããŸããããã§ãb iã¯ãB iãŸãã¯B i *ã®2ã€ã®ãããã¯ã®ããããã§ãã
2. æé 1ã§çæããã2 tã®ã¡ãã»ãŒãžã®äžãããinã§kåã®è¡çªãèŠã€ããããšããçµæãšããŠkåã®ã¡ãã»ãŒãžãååŸããŸãããã¹ãŠã®2 tã¡ãã»ãŒãžã¯åãå€Nãæã¡ããããã®kã¡ãã»ãŒãžã¯åžžã«GOST Rããã·ã¥é¢æ°ã®k-è¡çªã«ã€ãªããããšã«æ³šæããŠãã ããã
å³ 8. GOST Rã®kè¡çª ã®æ§ç¯ã®æŠç¥å³ã¹ããã1ã®ãã¹ãŠã®ã¡ãã»ãŒãžãããã¯ã¯0 256 || ãšãã圢åŒãæã£ãŠãããã {0ã1} 256ããã³â = b 1
b 2 
...
B ãã³ãΣäžäœãããã«ã¯ããå€ãã®ãã°ããã2 ãã³ + 256ã¹ããã2ãå¿
èŠãšããçæ³çãªã¢ãã«
ã®æ§ç¯ç©ãžã®èšªåè
kåã®è¡çªä»¥äžã®äžå¹³çãéµå®ããããã«å¿
èŠãšÎ£ã
äžèšã®äžå¹³çã解決ããã«ã¯ãæã
ã¯æã£ãŠããïŒ176†T â€2 256ããããŠ
æèšããã°ãT㯠176â€ãã¹ã-blochnogo T â€2 256ã¯ãç§ãã¡ãèŠã€ããããšãã§ããKã®ã¿è¡ãããšã«ãã-kolliziyuããã·ã¥é¢æ°GOST Rã
èšç®ããŸãããã®è€éãã¯ãçæ³çãªæ§é ã®ããã·ã¥é¢æ°ã®k-è¡çªãèŠã€ããããšã®è€éããããã¯ããã«å°ããã§ãã6.çµè«
ãã®ãã¯ã€ãããŒããŒã§ã¯ãGOST Rã®æå·è§£æçµæã瀺ããŸãããæåã«ããªããŠã³ãæ»ææè¡ã䜿çšãã4.5ã©ãŠã³ãã®GOST Rå§çž®æ©èœã«å¯Ÿããæ»æã«ã€ããŠèª¬æããŸãããããã«ããã®çµæã¯ãé«åºŠãªäº€ææè¡ã䜿çšããŠ5.5ã©ãŠã³ãã«åŒ·åãããŸãããæ¬¡ã«ã7.5ã©ãŠã³ããš9.5ã©ãŠã³ãã®æ»æãéæããããã«ãããŒæ¡åŒµã¹ããŒã ã®èªç±åºŠã䜿çšãããŸãããããã«ã9.5ã©ãŠã³ãã®æ»æã®çµæã䜿çšããŠãGOST Rå§çž®é¢æ°ã®10ã©ãŠã³ãèå¥åšãæç€ºããäœæ¥ã®æåŸã«ãGOST Rããã·ã¥é¢æ°ã®k-è¡çªãæ§ç¯ããæ¹æ³ãæç€ºããŸããããæåŠ
- X. WangãHãYuãMD5ããã³ãã®ä»ã®ããã·ã¥é¢æ°ãç Žãæ¹æ³ãæå·åã®é²æ©â EUROCRYPT 2005ãSpringerã2005ãppã19â35ã
- X. Wang, YL Yin, H. Yu, Finding Collisions in the Full SHA-1, in: Advances in CryptologyâCRYPTO 2005, Springer, 2005, pp. 17â36.
- V. Dolmatov, Gost R 34.11-94: Hash function algorithm.
- P. Barreto, V. Rijmen, The Whirlpool Hashing Function, in: First open NESSIE Workshop, Leuven, Belgium, Vol. 13, 2000, p. 14ã
- F. Mendel, C. Rechberger, M. SchlÀffer, SS Thomsen, The Rebound Attack: Cryptanalysis of Reduced Whirlpool and GrÞstl, in: Fast Software Encryption, Springer, 2009, pp. 260â276.
- M. Lamberger, F. Mendel, C. Rechberger, V. Rijmen, M. SchlÀffer, Rebound Distinguishers: Results on the Full Whirlpool Compression Function, in: Advances in CryptologyâASIACRYPT 2009, Springer, 2009, pp. 126â143.
- H. Gilbert, T. Peyrin, Super-sbox Cryptanalysis: Improved Attacks for AES-like Permutations, in: Fast Software Encryption, Springer, 2010, pp. 365â383.
- O. Dunkelman, N. Keller, A. Shamir, Improved Single-Key Attacks on 8-Round AES-192 and AES-256, in: Advances in Cryptology-ASIACRYPT 2010, Springer, 2010, pp. 158â176.
- F. Mendel, T. Peyrin, C. Rechberger, M. SchlÀffer, Improved Cryptanalysis of the Reduced GrÞstl Compression Function, Echo Permutation and AES Block Cipher, in: Selected Areas in Cryptography, Springer, 2009, pp. 16â35.
- D. Khovratovich, I. NikoliÄ, C. Rechberger, Rotational Rebound Attacks on Reduced Skein, in: Advances in Cryptology-ASIACRYPT 2010, Springer, 2010, pp. 1â19.
- A. Duc, J. Guo, T. Peyrin, L. Wei, Unaligned Rebound Attack: Application to Keccak, in: Fast Software Encryption, Springer, 2012, pp. 402â421.
- A. Joux, Multicollisions in Iterated Hash Functions: Application to Cascaded Constructions, in: Advances in CryptologyâCRYPTO 2004, Springer, 2004, pp. 306â316.
- D.ã¯ã°ããŒãäžè¬åãããèªçæ¥ã®åé¡ãïŒæå·åŠã®é²æ©â CRYPTO 2002ãSpringerã2002ãppã288-304ã