第一范文网 - 专业文章范例文档资料分享平台

应用加密和区块链2020cryptographic-agility-anticipating-preparing-for-and-executing-change

来源:用户分享 时间:2025/9/17 6:22:08 本文由loading 分享 下载这篇文档手机版
说明:文章内容仅供预览,部分内容可能不全,需要完整文档或者需要复制内容,请下载word后使用。下载word有问题请添加微信号:xxxxxxx或QQ:xxxxxx 处理(尽可能给您提供完整文档),感谢您的支持与谅解。

SESSION ID:ACB-T11

Cryptographic Agility: Anticipating, Preparing for and Executing ChangeMODERATOR:

Dr. Lily Chen

Manager of Cryptographic Technology GroupComputer Security Division

Information Technology Lab, NIST

PANELISTS:

Dr. David Ott

Senior Staff Researcher and Academic Program DirectorVMware Research

Dr.Zulfikar Ramzan

Chief Technology OfficerRSA

Dr. Brian LaMacchia

Distinguished EngineerMicrosoft

#RSAC

Cryptography Lifetime: Algorithm Strength Over Time

#RSAC

Cryptographic Agility: Addressing Change

Technology advancements and more sophisticated cryptanalysis empower attackers and increase threat levelsCryptography needs to change over time

Ex: Improvements in hash collision finding, future quantum computersAlgorithms become deprecated and need removalNew primitives and algorithms are introducedLarger key/signature/ciphertext sizes are neededAlternative parameter sets are introduced

#RSAC

Cryptographic Agility: a capability allowing us to make smooth transitions between algorithms and configurations3

Cryptographic Agility: Discussion Topics

1.

#RSAC

2.3.

4.

In the applications, products, or services your organization deploys, produces or provides, what does crypto agility mean and how has it been handled?

What have we learned from cryptography transitions in the past, and how might this motivate improvements?

What are the major challenges in dealing with transitions, for

example, from the current adopted cryptosystems to new quantum-resistant algorithms? Possible technical paths for transition?What strategies which you think might improve cryptographic agility?

4

Cryptographic Agility: What Can You Do Today

Build and maintain an inventory of current uses of cryptography in your systems and applications.

–Include algorithms, parameters, key sizes, protocols, etc.

#RSAC

Test transition ahead of time.

–For PQC, you can use Open Quantum Safe (OQS, https://openquantumsafe.org/) implementations to test candidate algorithms and PQC-enabled protocols.

Ask your suppliers for details on how they provide cryptographic agility in their systems and services.

Participate in industry forums discussing cryptography transition and the frameworks that will enable it.

–E.g., NIST PQC, IETF work on TLS hybrids

5

搜索更多关于: 应用加密和区块链2020cryptographic-agil 的文档
应用加密和区块链2020cryptographic-agility-anticipating-preparing-for-and-executing-change.doc 将本文的Word文档下载到电脑,方便复制、编辑、收藏和打印
本文链接:https://www.diyifanwen.net/c8ui774raxw7zlrl1bkfq6d7jn4l91z0139y_1.html(转载请注明文章来源)
热门推荐
Copyright © 2012-2023 第一范文网 版权所有 免责声明 | 联系我们
声明 :本网站尊重并保护知识产权,根据《信息网络传播权保护条例》,如果我们转载的作品侵犯了您的权利,请在一个月内通知我们,我们会及时删除。
客服QQ:xxxxxx 邮箱:xxxxxx@qq.com
渝ICP备2023013149号
Top