Cryptographic Library Botan for Long-term Durable Security
Motivation
With the rapidly progressing development of quantum computing, the computation of mathematically complex problems can potentially be accelerated by several magnitudes. On the one hand, this results in advantages for efficiently solving extensive optimization problems. On the other hand, many cryptographic algorithms used in today’s (practical) systems are endangered, as their security is based on exactly such mathematical problems. For this reason so-called post-quantum secure encryption methods shall be applied in the future.
Approach and goals
The goal of the KBLS project is the enhancement of the cryptographic library Botan particularly for long-term durable security. Therein, the following interrelated problems and challenges are in our focus:
- Post-quantum cryptography: We investigate cryptographic algorithms, which are particularly resistant against being broken by a quantum computer.
- Cryptographic agility: To ensure that a cryptographic system remains capable and secure on the long-term, we must be able to exchange its critical components with minimal effort. This can affect algorithms, protocols, random number generators and standards for instance.
- Key management: Cryptographic keys are an important core element for the security of a system. This property must especially be considered for the generation, storage and deletion of these keys, but also for binding them to hardware.
- Usability: Human error is the most prominent vulnerability when using cryptographic systems. The user should be supported with adequate methods to avoid errors in order to contribute to a security gain.
As a result, solutions should be elaborated, so that a developer using the cryptographic library – also in terms of quantum computing – can apply secure, flexible and yet comfortably usable cryptographic algorithms.
Project organization
KBLS is a joint research project funded by the German Federal Ministry of Education and Research (BMBF) and involves various expert partners from research and industrial fields. The BMBF is the project owner for this project. The Fraunhofer-Institute for Applied and Integrated Security is responsible for the project lead.
- Project management: VDI/VDE Innovation + Technik GmbH
- Consortium: Fraunhofer-Institute for Applied and Integrated Security (AISEC), Technische Universität Berlin, Rohde & Schwarz Cybersecurity GmbH, Nexenio GmbH
- Project duration: 12/2019 – 12/2022