NSA Suite B Cryptography

from Wikipedia, the free encyclopedia

The NSA Suite B Cryptography or Suite B for short is a collection of cryptographic algorithms that was compiled by the NSA in 2005 . The algorithms for use in the highly sensitive area of Suite A have not yet been published.

The asymmetrical method is Elliptic curve cryptography is used.

Algorithms

Suite B contains the following algorithms:

purpose algorithm Parameter length for confidentiality level ...
"secret" "top secret"
Encryption AES 128 256
Digital signature DSA in elliptic curves (ECDSA) 256 384
Key exchange Diffie Hellman in Elliptic Curves (ECDH) 256 384
Hash function SHA-2 256 384

The security level is classified according to the strength of the encryption. The specifications relate to the classification in the needs of the American authorities and thus also define the certification for companies.

The NSA relies on 26 software patents for its technology.

Certification and security classification

Software manufacturers can have their products based on Suite B algorithms certified and checked for security. For some areas of application in highly sensitive data environments (e.g. government) a check is mandatory.

In order for software to be used by the US government, a product must go through a certification process from the Cryptographic Module Verification Program (CMVP). A security check is carried out by external laboratories. Certified products can be used without restriction by the US government.

In August 2015, the NSA announced that it was planning "in the not too distant future" to switch to quantum-safe algorithms. In addition, she recommends that those who have not yet switched to Suite B should not make any significant effort to switch to Suite B, but rather plan to switch to the upcoming quantum-safe algorithms. On the other hand, it is emphasized that the NSA does not advise against using Suite B, but rather Suite B should be preferred in all cases in which elliptic curves are suitable. This should provide more flexibility.

Web links

Individual evidence

  1. a b Fact Sheet NSA Suite B Cryptography ( Memento of the original from February 7, 2009 in the Internet Archive ) Info: The archive link was automatically inserted and not yet checked. Please check the original and archive link according to the instructions and then remove this notice. from the NSA @1@ 2Template: Webachiv / IABot / www.nsa.gov
  2. ^ NSA Suite B Cryptography - NSA / CSS. (No longer available online.) In: www.nsa.gov. Archived from the original on January 1, 2016 ; Retrieved November 8, 2015 . Info: The archive link was inserted automatically and has not yet been checked. Please check the original and archive link according to the instructions and then remove this notice. @1@ 2Template: Webachiv / IABot / www.nsa.gov