研 究 方善謙 生 (中) 研 究 shan-Chien Fang 生 (英) 論 文 能抵擋電力分析攻擊之密碼硬體合成 名 稱 (中) 論 文 Synthesis of DPA-Resistant Cryptographic Hardware 名 稱 (英) 指 導 林寬仁 教 授 (中) 指 導 Kuan-Jen Lin 教 授 (英) 畢 業 學 年 度 95 出 版 年 語 文 別 英文 關 鍵 字 電力分析攻擊 密碼硬體合成 (中) 關 鍵 DPA-Resistant Synthesis Cryptographic Hardware 字 (英) 對於需密碼功能服務之嵌入式系統如智慧卡等,差異電力分析 (DPA) 攻擊 能藉著側漏的電力資訊快速地破解其密碼。預充電遮蓋 Reed-Muller 邏輯 摘 (Pre-charge Masked Reed-Muller Logic (PMRML))係一種能用來設計具有抵擋 要 DPA 攻擊能力電路之邏輯型式。本論文目的在研討以 PMRML 實現密碼電 (中) 路之自動合成。此合成目的在於減少 secured 2-input AND 閘之使用與降低 所需亂數遮蓋位元數。我們提出了有效的演算法,其能自動產生最佳化之 電路。我們以 C 語言實現此合成系統,並且已獲得可接受之實驗成果。 Cryptographic embedded systems are vulnerable to Differential Power Analysis (DPA) attacks. The Pre-charge Masked Reed-Muller Logic (PMRML) was proposed 摘 to implement DPA-resistant cryptographic hardware. In this thesis, automatic synthesis of DPA-resistant circuits using PMRML is studied. The proposed synthesis 要 attempts to minimize the number of secured 2-input AND gates and the amount of (英) random mask bits. Efficient algorithms were proposed to automatically generate the optimized circuits. The synthesis flow was implemented in C language. Morioka and A. Satoh, "An Optimized S-Box Circuit Architecture for Low Power AES Design," CHES 2002, LNCS, vol. 2523, pp. 172-186, 2003. [39] A. Rudra, P. K. Dubey, C. S. Jutla, V. Kumar, J. R. Rao, and P. Rohatgi, "Efficient Rijndael Encryption Implementation with Composite Field Arithmetic," CHES 2001, LNCS, vol. 2162 , pp. 171-184, 2001. [40] A. Satoh, S. Morioka, K. Takano, and S. Munetoh, "A Compact Rijndael Hardware Architecture with S-Box Optimization," ASIACRYPT 2001, LNCS, vol. 2248, pp. 239-254, 2001. [41] C. P. Su, T. F. Lin, C. T. Huang and C. W. Wu, "A High-Throughput Low-Cost AES Processor," IEEE Communications Magazine, vol. 41, Issue 12, pp. 86-91, Dec. 2003. [42] J. Wolkerstorfer, E. Oswald, and M. Lamberger, "An ASIC Implementation of the AES SBoxes," CT-RSA 2002, LNCS, vol. 2271, pp. 67-78, 2002.