Projects per year
Abstract
The reliance on asymmetric public key cryptography (PKC) and symmetric encryption for cyber-security in current telecommunication networks is threatened by the emergence of powerful quantum computing technology. This is due to the ability of quantum computers to efficiently solve problems such as factorization or discrete logarithms, which are the basis for classical PKC schemes. Thus, the assumption that communications networks are secure no longer holds true. Quantum Key Distribution (QKD) and post-quantum cryptography (PQC) are the first cyber-security technologies that allow communications to resist the attacks of a quantum computer. To achieve quantum-resistant communications, the aforementioned technologies need to be incorporated into a network security protocol such as Transport Layer Security (TLS). In this paper, we describe and implement two novel, hybrid solutions in which QKD and PQC are combined inside TLS for achieving quantum-resistant authenticated key exchange: Concatenation and Exclusively-OR (XOR). We present the results, in terms of complexity and security enhancement, of integrating state-of-the-art QKD and PQC technologies into a practical, industry-ready TLS implementation. Our findings demonstrate that the adoption of a PQC-only approach enhances the TLS handshake performance by approximately 9 % compared to classical methods. Furthermore, our hybrid PQC-QKD quantum-resistant TLS comes at a performance cost of approximately 117 % during the key establishment process. In return, we substantially augment the security of the handshake, paving the road for the development of future-proof quantum-resistant communication systems based on QKD and PQC.
Original language | English |
---|---|
Pages (from-to) | 345-358 |
Number of pages | 14 |
Journal | Computer Communications |
Volume | 213 |
DOIs | |
Publication status | Published - 1 Jan 2024 |
Funding
This work was supported by the EC H2020 MSCA ITN-ETN IoTalentum (grant no. 953442) and ECSEL JU project BRAINE (grant no. 876967) projects and the Dutch Ministry of Economic Affairs and Climate Policy (EZK), as part of the Quantum Delta NL programme. C. Rubio Garcia thanks Dr. Sebastian Verschoor from Eindhoven University of Technology for fruitful discussions regarding TLS and the work in this article.
Funders | Funder number |
---|---|
Marie Skłodowska‐Curie | 953442 |
Stichting Quantum Delta | |
Electronic Components and Systems for European Leadership | 876967 |
Ministerie van Economische Zaken en Klimaat | KAT2 |
Keywords
- Cybersecurity
- Post-quantum cryptography
- Quantum key distribution
- Quantum-resistant cryptography
- Transport layer security
Fingerprint
Dive into the research topics of 'Quantum-resistant Transport Layer Security'. Together they form a unique fingerprint.-
QKD Testbed
Rommel, S. (Project Manager), Patterson, D. (Project member), Verschoor, S. R. (Project member), Álvarez Roa, M. (Project member) & Stan, C. (Project member)
1/09/21 → 31/12/28
Project: Third tier
-
IoTalentum: Internet of Things: Advance Learning in NetworkedTraining
Tafur Monroy, I. (Project Manager), Rommel, S. (Project member), Patterson, D. (Project member), Stan, C. (Project member), Rubio García, C. (Project member), Bouchmal, O. (Project member), Cimoli, B. (Project member), Sluijsmans, M. (Project member), Toes, G. (Project member) & Witteveen, F. (Project member)
1/10/20 → 30/06/25
Project: Third tier
-
BRAINE: Big data pRocessing and Artificial Intelligence at the Network Edge
Tafur Monroy, I. (Project Manager), Rommel, S. (Project member), Patterson, D. (Project member), Cimoli, B. (Project member) & Verschoor, S. R. (Project member)
1/05/20 → 30/11/23
Project: Research direct