« How serious is phishing? | Main | Federated key management as the basis for secure cloud computing »

Tuesday, 01 December 2009

The last word on FPE?

There's an interesting paper by Mihir Bellare, Thomas Ristenpart, Phillip Rogaway and Till Stegers that's available on the IACR ePrint archive. This paper has the unassuming title "Format-Preserving Encryption," but it seems to have a fairly complete and definitive discussion of how to encrypt in an efficient and secure way that maps a plaintext into a ciphertext of identical format.

This is not a paper for casual readers because it talks about FPE at a level that's probably accessible only to cryptographers. But if you're interested in the details of the technical challenges that you need to address to make efficient and secure FPE schemes, it's probably the best paper to read.

Interestingly, Rogaway's work on this paper was supported by a grant from the NSF that's part of the American Recovery and Reinvestment Act of 2009. In other words, it's part of the US government's massive economic stimulus program. Apparently the government sees FPE as being a technology that's important to the future of the US economy.

TrackBack

TrackBack URL for this entry:
http://www.typepad.com/services/trackback/6a00e55375ef1c88330120a6a89cf9970b

Listed below are links to weblogs that reference The last word on FPE?:

Comments

Post a comment

If you have a TypeKey or TypePad account, please Sign In.

Voltage Data Breach Index

  • Grab the Voltage Data Breach Index

September 2010

Sun Mon Tue Wed Thu Fri Sat
      1 2 3 4
5 6 7 8 9 10 11
12 13 14 15 16 17 18
19 20 21 22 23 24 25
26 27 28 29 30