Computer Security: Principles and Practice, 1/e


Random Number Requirements



Download 2,39 Mb.
bet4/5
Sana10.11.2022
Hajmi2,39 Mb.
#862890
1   2   3   4   5
Bog'liq
DigitalSignatures-1

Random Number Requirements

Randomness

  • Criteria:
    • Uniform distribution
      • Frequency of occurrence of each of the numbers should be approximately the same
    • Independence
      • No one value in the sequence can be inferred from the others

Unpredictability

  • Each number is statistically independent of other numbers in the sequence
  • Opponent should not be able to predict future elements of the sequence on the basis of earlier elements

See: https://www.random.org/ and Pseudorandom number generator

Random versus Pseudorandom


Cryptographic applications typically make use of algorithmic techniques for random number generation
    • Algorithms are deterministic and therefore produce sequences of numbers that are not statistically random

Pseudorandom numbers are:
    • Sequences produced that satisfy statistical randomness tests
    • Likely to be predictable

True random number generator (TRNG):
    • Uses a nondeterministic source to produce randomness
    • Most operate by measuring unpredictable natural processes
      • e.g. radiation, gas discharge, leaky capacitors
    • Increasingly provided on modern processors

Practical Application: Encryption of Stored Data


Common to encrypt transmitted data
Much less common for stored data (data at rest)
There is often little protection beyond domain authentication and operating system access controls
Data are archived for indefinite periods
Even though erased, until disk sectors are reused data are recoverable
Approaches to encrypt stored data:
Use a commercially available encryption package

Download 2,39 Mb.

Do'stlaringiz bilan baham:
1   2   3   4   5




Ma'lumotlar bazasi mualliflik huquqi bilan himoyalangan ©hozir.org 2024
ma'muriyatiga murojaat qiling

kiriting | ro'yxatdan o'tish
    Bosh sahifa
юртда тантана
Боғда битган
Бугун юртда
Эшитганлар жилманглар
Эшитмадим деманглар
битган бодомлар
Yangiariq tumani
qitish marakazi
Raqamli texnologiyalar
ilishida muhokamadan
tasdiqqa tavsiya
tavsiya etilgan
iqtisodiyot kafedrasi
steiermarkischen landesregierung
asarlaringizni yuboring
o'zingizning asarlaringizni
Iltimos faqat
faqat o'zingizning
steierm rkischen
landesregierung fachabteilung
rkischen landesregierung
hamshira loyihasi
loyihasi mavsum
faolyatining oqibatlari
asosiy adabiyotlar
fakulteti ahborot
ahborot havfsizligi
havfsizligi kafedrasi
fanidan bo’yicha
fakulteti iqtisodiyot
boshqaruv fakulteti
chiqarishda boshqaruv
ishlab chiqarishda
iqtisodiyot fakultet
multiservis tarmoqlari
fanidan asosiy
Uzbek fanidan
mavzulari potok
asosidagi multiservis
'aliyyil a'ziym
billahil 'aliyyil
illaa billahil
quvvata illaa
falah' deganida
Kompyuter savodxonligi
bo’yicha mustaqil
'alal falah'
Hayya 'alal
'alas soloh
Hayya 'alas
mavsum boyicha


yuklab olish