If DES were a group [117], then given keys K1and K2, there would exist a key K% such that
E(P, K3) = E(E{P, K1),K2) for all plaintext P,
and we could also find such a key K3if any of the encryptions were replaced by decryptions. If equation (6.39) holds, then triple DES is no more secure than single DES. It was established in [45] that DES is not a group and, consequently, triple DES is more secure than single DES. Show that TDES is not a group. Hint: Select TDES keys Κ and K2. You will be finished if you can verify that there does not exist any key K3for which E(P,K3) = E(E(P,K1),K2) for all possible choices of P.
Already registered? Login
Not Account? Sign up
Enter your email address to reset your password
Back to Login? Click here