[Resource Topic] 2023/607: Security analysis of the Milenage-construction based on a PRF

Welcome to the resource topic for 2023/607

Title:
Security analysis of the Milenage-construction based on a PRF

Authors: Alexander Maximov, Mats Näslund

Abstract:

This paper analyses the security of the so-called Milenage construction, developed by ETSI SAGE, when it is based on a non-one-to-one pseudo-random function (PRF) rather than a one-to-one pseudo-random permutation (PRP). It is shown that Milenage based on an n-bit random function and producing t n-bit outputs, is indistinguishable from a random tn-bit function up to q = O(2^{n/2}/ t) queries. We also extend the existing security proof for PRP-based Milenage due to Gilbert by incorporating also the Milenage message authentication function in the proof.

ePrint: https://eprint.iacr.org/2023/607

See all topics related to this paper.

Feel free to post resources that are related to this paper below.

Example resources include: implementations, explanation materials, talks, slides, links to previous discussions on other websites.

For more information, see the rules for Resource Topics .