Score:1

Evaluation criteria for NIST finalist candidates

mx flag

I have seen several recent papers mention that side-channel resistance and countermeasure will be a major evaluation criterion for the NIST finalist candidates. However, I don't find any reference to this. Has NIST officially declared this criterion? I can find this document which has mentioned only about performance but nothing about side-channels. Thank you in advance for your help.

kelalaka avatar
in flag
The keyword is call.
Score:1
ru flag

In the initial call for submissions in section 4.A.6 Additional Security Properties, they do state:

Another case where security and performance interact is resistance to side-channel attacks. Schemes that can be made resistant to side-channel attack at minimal cost are more desirable than those whose performance is severely hampered by any attempt to resist side-channel attacks. We further note that optimized implementations that address side-channel attacks (e.g., constant-time implementations) are more meaningful than those which do not.

Although the language does not suggest that this is a major criterion, it is nevertheless at least a desideratum.

They also state in their report on the outcome of the second round (Section 4 Conclusion)

NIST hopes that with only seven finalists and eight alternate candidates, the public review period will include more work on side-channel resistant implementations, performance data in internet protocols, and performance data for hardware implementations in addition to more rigorous cryptanalytical study.

which could be regarded as increasing the emphasis.

mangohost

Post an answer

Most people don’t grasp that asking a lot of questions unlocks learning and improves interpersonal bonding. In Alison’s studies, for example, though people could accurately recall how many questions had been asked in their conversations, they didn’t intuit the link between questions and liking. Across four studies, in which participants were engaged in conversations themselves or read transcripts of others’ conversations, people tended not to realize that question asking would influence—or had influenced—the level of amity between the conversationalists.