<p>Highly optimized C implementation of the NTRUEncrypt algorithm, using the FLINT library.</p>
<h2><aclass="anchor"id="mot"></a>
Motivation</h2>
<p>Modern quantum computers will enable us to ride extremely effective attacks on crypto algorithms like rsa. One known attack is the quantum algorithm called <ahref="http://en.wikipedia.org/wiki/Shor%27s_algorithm">Shor's algorithm</a>. In the light of fast paced computer hardware development and known quantum algorithms, it is of importance to find and implement alternatives which are not vulnerable to these attacks.</p>
<p>One known alternative is called <ahref="http://en.wikipedia.org/wiki/NTRUEncrypt">NTRU</a> and will be our main focus. It is lattice-based (shortest vector problem in a lattice). In fact, NTRU is a parametrised family of cryptosystems. As such it is represented by the triple (N, p, q), where N is prime, q is always larger than p and p and q are coprime. As well as four sets of polynomials: a polynomial part of the private key, a polynomial for generation of the public key, the message and a blinding value, respectively, all of degree at most N - 1. It is, in theory, very efficient, since encryption and decryption only use simple polynomial multiplication which are very fast compared to asymmetric encryption schemes.</p>
<h2><aclass="anchor"id="goals"></a>
Goals</h2>
<p>Our main goal is to implement an alternative library of the NTRU algorithm in C and gather experience in cryptographic programming. Further, it may help to raise awareness of the need of quantum-secure encryption and enable us to contribute to already present implementations. It may even reveal problems of other implementations and help advancing them. It may as well help with diversity in crypto implementations, which is always a good thing. On top of that we will provide a command-line interface to our library and allow basic operations like key creation and encryption from stdin.</p>
<p>Optimizing the algorithm itself is not within our scope. However, the library may undergo heavy changes on the mathematical implementation of polynomial arithmetic, in order to optimize run-time behaviour.</p>
<h2><aclass="anchor"id="algos"></a>
Algorithms</h2>
<p>Most of the algorithms in <aclass="el"href="ntru__poly_8c.html"title="operations on polynomials">ntru_poly.c</a>, <aclass="el"href="ntru__decrypt_8c.html"title="NTRU decryption.">ntru_decrypt.c</a>, <aclass="el"href="ntru__encrypt_8c.html"title="NTRU encryption.">ntru_encrypt.c</a> and <aclass="el"href="ntru__keypair_8c.html"title="key creation and operations">ntru_keypair.c</a> are based on the pseudo-code from <ahref="http://www.crypto.wpi.edu/Publications/Documents/ms_corourke.pdf">Efficient NTRU Implementations by Colleen Marie O'Rourke</a>.</p>
<p>Further work is based on <ahref="http://www.math.uni-hamburg.de/home/kuehn/moldenhauer-bsc-NTRUKryptosystem-final.pdf">Das NTRU-Kryptosystem von Anja Moldenhauer</a> and the official <ahref="https://www.securityinnovation.com/uploads/Crypto/NTRUTech014.pdf">NTRU Cryptosystems Technical Report #14</a>.</p>
<p>This library was written for Linux systems. Support for windows will not be added. \* <ahref="http://www.flintlib.org">FLINT-2.4.3 or later</a> (compiled with gmp and mpfr) \* <ahref="https://developer.gnome.org/glib/stable/">glib-2.0</a> \* <ahref="http://www.freedesktop.org/wiki/Software/pkg-config/">pkg-config</a> (for the build only)</p>
<h2><aclass="anchor"id="install_sec"></a>
Installation</h2>
<p>\* make \* make install</p>
<h2><aclass="anchor"id="usage"></a>
Usage</h2>
<p>See this API doc, the public headers are in the include/ subfolder.</p>
<h2><aclass="anchor"id="perf"></a>
Performance</h2>
<p>See <ahref="https://github.com/hasufell/pqc/wiki/Performance-analysis">Performance Analysis on github</a>.</p>
<h2><aclass="anchor"id="ref"></a>
References</h2>
<p>\* <ahref="https://github.com/hasufell/pqc">This library on github</a> \* <ahref="http://citeseerx.ist.psu.edu/viewdoc/download?doi=10.1.1.25.8422&rep=rep1&type=pdf">Original NTRUEncrypt paper</a> \* <ahref="http://www.crypto.wpi.edu/Publications/Documents/ms_corourke.pdf">Efficient NTRU Implementations by Colleen Marie O'Rourke</a> \* <ahref="http://www.math.uni-hamburg.de/home/kuehn/moldenhauer-bsc-NTRUKryptosystem-final.pdf">Das NTRU-Kryptosystem von Anja Moldenhauer</a> \* <ahref="https://www.securityinnovation.com/uploads/Crypto/NTRUTech014.pdf">NTRU Cryptosystems Technical Report #14</a> \* <ahref="http://teal.gmu.edu/courses/ECE646/project/reports_2001/dsouza.pdf">The NTRU Cryptosystem: Implementation and Comparative Analysis by Rodney D'Souza</a> \* <ahref="http://en.wikipedia.org/wiki/NTRUEncrypt">Wikipedia Article</a></p>