
【国外标准】 Prime Number Generation, Primality Testing, and Primality Certificates
本网站 发布时间:
2023-03-28
开通会员免费在线看70000余条国内标准,赠送文本下载次数,单本最低仅合13.3元!还可享标准出版进度查询、定制跟踪推送、标准查新等超多特权!  
查看详情>>

适用范围:
In the current state of the art in public key cryptography, all methods require, in one way or another, the use of prime numbers as parameters to the various algorithms. This document presents a set of accepted techniques for generating primes. It is intended that ASC X9 standards that require the use of primes will refer to this document, rather than trying to define these techniques on a case-by-case basis. Standards, as they exist today, may differ in the methods they use for parameter generation from those specified in this document. It is anticipated that as each existing ASC X9 standard comes up for its 5-year review, it will be modified to reference this document instead of specifying its own techniques for generating primes. This standard defines methods for generating large prime numbers as needed by public key cryptographic algorithms. It also provides testing methods for testing candidate primes presented by a third party. This standard allows primes to be generated either deterministically or probabilistically, where:?A number shall be accepted as prime when a probabilistic algorithm that declares it to be prime is in error with probability less than 2?00.?A deterministic prime shall be generated using a method that guarantees that it is prime. In addition to algorithms for generating primes, this standard also presents primality certificates for some of the algorithms where it is feasible to do so. The syntax for such certificates is beyond the scope of this document. Primality certificates are never required by this standard. Primality certificates are not needed when a prime is generated and kept in a secure environment that is managed by the party that generated the prime. A requirement placed upon the use of this standard, but out of scope, is as follows:?When a random or pseudo-random number generator is used to generate prime numbers, an ANSI approved random number (or bit) generator (i.e., one that is specified in an ANSI X9 standard) shall be used. This requirement is necessary to ensure security. NOTE鵗he 2-100 failure probability is selected to be sufficiently small that errors are extremely unlikely ever to occur in normal practice. Moreover, even if an error were to occur when one party tests a prime, subsequent tests by the same or other parties would detect the error with overwhelming probability. Furthermore, the 2-100 probability is an upper bound on the worst-case probability that a test declares any non-prime candidate to be prime; not all non-primes may reach this bound, and the probability that a non-prime generated at random passes such a test is much lower. Accordingly, the 2-100 bound is considered appropriate independent of the size of the prime being generated and the intended security level of the cryptosystem in which the prime is to be employed. For high-assurance applications, however, the deterministic methods may nevertheless be preferable.
标准号:
ASC X9.80-2005 (R2013)
标准名称:
Prime Number Generation, Primality Testing, and Primality Certificates
英文名称:
Prime Number Generation, Primality Testing, and Primality Certificates标准状态:
现行-
发布日期:
-
实施日期:
出版语种:
- 推荐标准
- ANSI INCITS 135-1992 (R1998) Information Systems - Database Language - SQL (includes ANSI X3.168-1989) (formerly ANSI X3.135-1992 (R1998))
- ANSI INCITS 189-1991 (R2002) Information Systems - Interface between Data Terminal Equipment (DTE) and Data Circuit-Terminating Equipment (DCE) for Terminals Operating in the Packet Mode and Accessing a Packet-Switched Public Data Network Through Switched Access (formerly ANSI X3.189-1991 (R1997))
- ANSI INCITS 191-1991 (R2002) Recorded Optical Media Unit for Digital Information Interchange - 130-mm Write-Once Sampled-Servo RZ Selectable-Pitch Optical Disk Cartridge (formerly ANSI X3.191-1991 (R1997))
- ANSI INCITS 198-1992 (R2002) Programming Language - Fortran - Extended (formerly ANSI X3.198-1992 (R1997))
- ANSI INCITS 200-1992 (R2002) Information Systems - Unrecorded Optical Media Unit for Digital Information Interchange - 356 mm WORM Optical Disk Cartridge - Parts 1 and 2 (formerly ANSI X3.200-1992 (R1997))
- ANSI INCITS 297-1997 (R2002) Information Technology - Fibre Channel - Physical and Signalling Interface-2 (FC-PH-2) (formerly ANSI X3.297-1997)
- ANSI INCITS 317-1998 (R2008) AT Attachment with Packet Interface Extension (ATA/ATAPI-4)
- ANSI INCITS 47-1988 (R2005) Codes Structure and Data Requirements for the Identification of Named Populated Places, Primary County Divisions, and Other Locational Entities of the United States and its Outlying and Associated Areas for Information Interchange (formerly ANSI X3.47-19
- ANSI INCITS 61-1986 (R2007) Geographic Point Locations for Information Interchange, Representation of (formerly ANSI X3.61-1986 (R1997))
- ANSI X9.100-110-2021 Document Imaging Compatibility
- ANSI X9.100-120-2015 (R2021) Bank Deposit Tickets
- ANSI X9.100-140-2018 Financial Services - Image Replacement Document - IRD
- ANSI X9.100-150-2010 (S2022) Check Carrier Envelopes
- ANSI X9.100-151-2010 (S2022) Check Correction Strips
- ANSI X9.100-160-2-2020 Magnetic Ink Printing (MICR) - Part 2 EPC Field Use