2010
DOI: 10.1007/978-3-642-12510-2_5
|View full text |Cite
|
Sign up to set email alerts
|

Designing a Side Channel Resistant Random Number Generator

Abstract: This paper describes the design of the random number generator (RNG) in the Caernarvon high assurance smart card operating system. Since it is used in the generation of cryptographic keys and other sensitive materials, the RNG has a number of stringent security requirements that the random bits must be of good quality i.e. the bits must not be predictable or biased. To this end, a number of standards such as the German AIS 31 mandate that true random bits be continuously tested before use in sensitive applicat… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1

Citation Types

0
1
0
1

Year Published

2012
2012
2021
2021

Publication Types

Select...
4
2

Relationship

0
6

Authors

Journals

citations
Cited by 6 publications
(2 citation statements)
references
References 16 publications
0
1
0
1
Order By: Relevance
“…Nevertheless, old log entries can't be modified and stay secure, because a CSPRNG withstands state compromise extensions. There are many real-world physical attacks on memory that enable an attacker to gain access to the random number generator by memory leakage or side channels (Akavia et al, 2009;Chari et al, 2010). To avoid this problem, a random generator implemented in hardware can be used.…”
Section: Attacks To Obtain the Random Generatormentioning
confidence: 99%
“…Nevertheless, old log entries can't be modified and stay secure, because a CSPRNG withstands state compromise extensions. There are many real-world physical attacks on memory that enable an attacker to gain access to the random number generator by memory leakage or side channels (Akavia et al, 2009;Chari et al, 2010). To avoid this problem, a random generator implemented in hardware can be used.…”
Section: Attacks To Obtain the Random Generatormentioning
confidence: 99%
“…Як обговорювалося в праці [18], ці жорсткі вимоги ускладнюють ефективний та корисний ІГВЧ. Тому альтернативою було б мати генератор псевдовипадкових чисел (ГПВЧ).…”
Section: аналіз останніх досліджень і публікаційunclassified