I welcome this change, and would like to see all the floating-point operations gone, making FALCON more similar to HAWK in that sense.
Thanks!
--
V/R,
Uri
There are two ways to design a system. One is to make it so simple there are obviously no deficiencies.
The other is to make it so complex there are no obvious deficiencies.
- C. A. R. Hoare
From: 'Thomas Pornin' via pqc-forum <pqc-...@list.nist.gov>
Reply-To: Thomas Pornin <por...@bolet.org>
Date: Tuesday, February 13, 2024 at 14:46
To: pqc-forum <pqc-...@list.nist.gov>
Subject: [EXT] [pqc-forum] [FALCON OFFICIAL] Keygen implementation
ZjQcmQRYFpfptBannerEnd
--
You received this message because you are subscribed to the Google Groups "pqc-forum" group.
To unsubscribe from this group and stop receiving emails from it, send an email to pqc-forum+...@list.nist.gov.
To view this discussion on the web visit https://groups.google.com/a/list.nist.gov/d/msgid/pqc-forum/f2f037b9-a490-4623-9650-fadb3fd6672dn%40list.nist.gov.
Hi all,
Let me start by saying that we do agree that removing FP operations is a good general direction for improvement on embedded platforms.
However, we agree with Simon here: we do not see a (significant)
benefit from removing the (partial) FP operations of the key generation of Falcon.
Key generation is in many cases not even performed on an embedded device.
In many cases, keys are provisioned beforehand and therefore this change would not help with easing Falcon implementation.
Even in the cases where key generation would be performed on chip, the FP operations that remain are still a question mark for side-channel protection.
Without removing FP operations from signing (that does not impact performance as grossly as FP to Integer conversion does), we do not see a clear benefit for embedded context.
Cheers, on behalf of the NXP PQC team,
Christine
To unsubscribe from this group and stop receiving emails from it, send an email to pqc-forum+...@list.nist.gov.
To view this discussion on the web visit https://groups.google.com/a/list.nist.gov/d/msgid/pqc-forum/a589e4f6-4a42-4160-a1ac-edc577222e26%40hoerder.net.
One significant benefit of removing all the FP operation from FALCON would be simplification of its validation process – the fact that validation difficulties are explicitly called out in the NIST reports should tell something.
--
V/R,
Uri
From: <pqc-...@list.nist.gov> on behalf of Christine Cloostermans <cvv...@gmail.com>
Date: Friday, February 16, 2024 at 02:31
To: Simon Hoerder <si...@hoerder.net>
Cc: "pqc-...@list.nist.gov" <pqc-...@list.nist.gov>
Subject: [EXT] Re: [pqc-forum] [FALCON OFFICIAL] Keygen implementation
Hi all, Let me start by saying that we do agree that removing FP operations is a good general direction for improvement on embedded platforms. However, we agree with Simon here: we do not see a (significant) benefit from removing the (partial)
ZjQcmQRYFpfptBannerStart
|
ZjQcmQRYFpfptBannerEnd
To view this discussion on the web visit https://groups.google.com/a/list.nist.gov/d/msgid/pqc-forum/CAHzQBQWEAbU0eqLxO3Bge9ejQCm%2BHQPvxQbDvhru4MTTkP0f%2Bw%40mail.gmail.com.
> an email to pqc-forum+unsubscribe@list.nist.gov
> <mailto:pqc-forum+unsubscribe@list.nist.gov>.
> To view this discussion on the web visit
> https://groups.google.com/a/list.nist.gov/d/msgid/pqc-forum/f2f037b9-a490-4623-9650-fadb3fd6672dn%40list.nist.gov <https://groups.google.com/a/list.nist.gov/d/msgid/pqc-forum/f2f037b9-a490-4623-9650-fadb3fd6672dn%40list.nist.gov?utm_medium=email&utm_source=footer>.
--
You received this message because you are subscribed to the Google Groups "pqc-forum" group.
To unsubscribe from this group and stop receiving emails from it, send an email to pqc-forum+unsubscribe@list.nist.gov.
To view this discussion on the web visit https://groups.google.com/a/list.nist.gov/d/msgid/pqc-forum/a589e4f6-4a42-4160-a1ac-edc577222e26%40hoerder.net.
--
You received this message because you are subscribed to the Google Groups "pqc-forum" group.
To unsubscribe from this group and stop receiving emails from it, send an email to pqc-forum+unsubscribe@list.nist.gov.
> an email to pqc-forum+...@list.nist.gov
> <mailto:pqc-forum+...@list.nist.gov>.
> To view this discussion on the web visit
> https://groups.google.com/a/list.nist.gov/d/msgid/pqc-forum/f2f037b9-a490-4623-9650-fadb3fd6672dn%40list.nist.gov <https://groups.google.com/a/list.nist.gov/d/msgid/pqc-forum/f2f037b9-a490-4623-9650-fadb3fd6672dn%40list.nist.gov?utm_medium=email&utm_source=footer>.
--
You received this message because you are subscribed to the Google Groups "pqc-forum" group.
To unsubscribe from this group and stop receiving emails from it, send an email to pqc-forum+...@list.nist.gov.
To view this discussion on the web visit https://groups.google.com/a/list.nist.gov/d/msgid/pqc-forum/a589e4f6-4a42-4160-a1ac-edc577222e26%40hoerder.net.--
You received this message because you are subscribed to the Google Groups "pqc-forum" group.
To unsubscribe from this group and stop receiving emails from it, send an email to pqc-forum+...@list.nist.gov.
To view this discussion on the web visit https://groups.google.com/a/list.nist.gov/d/msgid/pqc-forum/1ed07823-2b26-43ef-aec1-84bde0825026n%40list.nist.gov.