Re: ECC and timing attacks

New Message Reply About this list Date view Thread view Subject view Author view

Eric Young (eay@cryptsoft.com)
Fri, 9 Oct 1998 15:30:52 +1000 (EST)


On Thu, 8 Oct 1998, Tim Dierks wrote:
> We have reason to believe that ECC can be protected against timing attacks,
> as can other algorithms. The interesting question is how expensive a
> protected algorithm is: with at least some variants of ECC, it's likely
> that protection is available at a lower computational cost (approaching
> free) than it is with other algorithms, such as RSA.

hmm... the blinding cost for RSA is not what I would call high, for a
pentium II 333 linux,

         normal blinding % diff
rsa 512 0.0033s 0.0036s %9
rsa 1024 0.0187s 0.0193s %3
rsa 2048 0.1180s 0.1213s %2
rsa 4096 0.7785s 0.7885s %1

eric


New Message Reply About this list Date view Thread view Subject view Author view

 
All trademarks and copyrights are the property of their respective owners.

Other Directory Sites: SeekWonder | Directory Owners Forum

The following archive was created by hippie-mail 7.98617-22 on Sat Apr 10 1999 - 01:15:21