|
F-ACRS — Augmented CRS
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
F-CERT — Certification
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
F-CRS — Common reference string
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
F-KR — Key registration, with knowledge
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
F-LSC — Leaky secure channel, bounded budget
|
0Idealized Setup and Resources
|
Canonical
|
0Defined
|
|
F-PKI — Public-key infrastructure, one registrant
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
F-PUF — Physically uncloneable function
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
F-RO — Local random oracle
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
F-RP — Randomized half-ideal cipher
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
F-Rand — Randomness source with erasure
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
F-Store — Shared storage with erasure
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
F-clocksync — Imperfect local clock
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
F-nettime — Approximate timer, environment-skewed
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
F-syn — Synchronous network, round-based
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
F-wrap — Tamper-proof hardware token
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
G-GG — Global generic group, type-3 bilinear
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
G-PKI — Global, non-encapsulated PKI
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
G-RO — Global RO: observable, programmable, restricted
|
0Idealized Setup and Resources
|
Canonical
|
0Defined
|
|
G-clock — Clock
|
0Idealized Setup and Resources
|
Idealized Setup
|
0Defined
|
|
F-ABA — Asynchronous Byzantine agreement
|
1Channels, Agreement, Ledgers
|
Canonical
|
0Defined
|
|
F-AC — Δ-delayed authenticated channel
|
1Channels, Agreement, Ledgers
|
Canonical
|
0Defined
|
|
F-BA — Byzantine agreement
|
1Channels, Agreement, Ledgers
|
Canonical
|
0Defined
|
|
F-BC — Broadcast
|
1Channels, Agreement, Ledgers
|
Canonical
|
0Defined
|
|
F-Net — Δ-delayed diffusion network
|
1Channels, Agreement, Ledgers
|
Canonical
|
0Defined
|
|
F-RBC — Relaxed broadcast
|
1Channels, Agreement, Ledgers
|
Canonical
|
0Defined
|
|
F-SA — Split authentication, unauthenticated channels
|
1Channels, Agreement, Ledgers
|
Canonical
|
0Defined
|
|
F-SC — Session secure channel, strong
|
1Channels, Agreement, Ledgers
|
Canonical
|
0Defined
|
|
F-auth — Authenticated transmission
|
1Channels, Agreement, Ledgers
|
Canonical
|
0Defined
|
|
F-certmail — Certified mail
|
1Channels, Agreement, Ledgers
|
Emerging
|
1No canonical definition
|
|
F-dauth — Key exchange with incriminating abort
|
1Channels, Agreement, Ledgers
|
Canonical
|
0Defined
|
|
F-diffuse — Multicast network, bounded delay
|
1Channels, Agreement, Ledgers
|
Canonical
|
0Defined
|
|
F-ledger — Account-balance ledger
|
1Channels, Agreement, Ledgers
|
Canonical
|
0Defined
|
|
F-smt — Secure message transmission
|
1Channels, Agreement, Ledgers
|
Canonical
|
0Defined
|
|
G-ledger — Global transaction ledger, sliding window
|
1Channels, Agreement, Ledgers
|
Canonical
|
0Defined
|
|
F-AEAD — Authenticated encryption with associated data
|
2Cryptographic Library and Symmetric Primitives
|
Canonical
|
0Defined
|
|
F-CRHF — Collision-resistant hashing
|
2Cryptographic Library and Symmetric Primitives
|
Open
|
1No canonical definition
|
|
F-KDF — Key derivation
|
2Cryptographic Library and Symmetric Primitives
|
Canonical
|
0Defined
|
|
F-MAC — Message authentication code
|
2Cryptographic Library and Symmetric Primitives
|
Canonical
|
0Defined
|
|
F-MHF — Memory-hard function, password hashing
|
2Cryptographic Library and Symmetric Primitives
|
Open
|
1No canonical definition
|
|
F-OWF — One-way function
|
2Cryptographic Library and Symmetric Primitives
|
Open
|
1No canonical definition
|
|
F-PRF, F-PRP — Pseudorandom function, permutation
|
2Cryptographic Library and Symmetric Primitives
|
Open
|
1No canonical definition
|
|
F-PRG — Pseudorandom generator
|
2Cryptographic Library and Symmetric Primitives
|
Open
|
1No canonical definition
|
|
F-SE — Symmetric encryption, stream cipher
|
2Cryptographic Library and Symmetric Primitives
|
Canonical
|
0Defined
|
|
F-crypto — Joint-state cryptographic library
|
2Cryptographic Library and Symmetric Primitives
|
Canonical
|
0Defined
|
|
F-fsAEAD — Forward-secure AEAD, one epoch
|
2Cryptographic Library and Symmetric Primitives
|
Canonical
|
0Defined
|
|
F-ABE — Attribute-based encryption, static attribute corruption
|
3Public-Key Primitives, Key Exchange, Messaging
|
Emerging
|
0Defined
|
|
F-CGKA — Continuous group key agreement, history graph
|
3Public-Key Primitives, Key Exchange, Messaging
|
Emerging
|
0Defined
|
|
F-CKE — Epoch key exchange, asymmetric ratchet
|
3Public-Key Primitives, Key Exchange, Messaging
|
Canonical
|
0Defined
|
|
F-DH — Diffie–Hellman exchange inside F-crypto
|
3Public-Key Primitives, Key Exchange, Messaging
|
Canonical
|
0Defined
|
|
F-ESR — FE for stateful, randomized functionalities
|
3Public-Key Primitives, Key Exchange, Messaging
|
Emerging
|
0Defined
|
|
F-FHE — Homomorphic evaluation
|
3Public-Key Primitives, Key Exchange, Messaging
|
Open
|
1No canonical definition
|
|
F-IBE — Identity-based encryption
|
3Public-Key Primitives, Key Exchange, Messaging
|
Emerging
|
2Not yet written
|
|
F-KE — Key exchange, strong with forward secrecy
|
3Public-Key Primitives, Key Exchange, Messaging
|
Canonical
|
0Defined
|
|
F-NCE — Non-committing encryption
|
3Public-Key Primitives, Key Exchange, Messaging
|
Canonical
|
1No canonical definition
|
|
F-PHE — Threshold password-hardened encryption
|
3Public-Key Primitives, Key Exchange, Messaging
|
Canonical
|
0Defined
|
|
F-PKE — Public-key encryption
|
3Public-Key Primitives, Key Exchange, Messaging
|
Canonical
|
0Defined
|
|
F-SIG — Digital signature
|
3Public-Key Primitives, Key Exchange, Messaging
|
Canonical
|
0Defined
|
|
F-aPAKE — Asymmetric PAKE
|
3Public-Key Primitives, Key Exchange, Messaging
|
Canonical
|
0Defined
|
|
F-aPKE — Adaptively secure forward-secure encryption
|
3Public-Key Primitives, Key Exchange, Messaging
|
Canonical
|
0Defined
|
|
F-adsig — Adaptor signature
|
3Public-Key Primitives, Key Exchange, Messaging
|
Canonical
|
0Defined
|
|
F-obf — Obfuscation
|
3Public-Key Primitives, Key Exchange, Messaging
|
Open
|
1No canonical definition
|
|
F-pwKE — Password-authenticated key exchange
|
3Public-Key Primitives, Key Exchange, Messaging
|
Canonical
|
0Defined
|
|
F-rPKE — Replayable CCA encryption
|
3Public-Key Primitives, Key Exchange, Messaging
|
Canonical
|
0Defined
|
|
F-saPAKE — Strong asymmetric PAKE
|
3Public-Key Primitives, Key Exchange, Messaging
|
Canonical
|
0Defined
|
|
F-secmsg — End-to-end secure messaging, two-party session
|
3Public-Key Primitives, Key Exchange, Messaging
|
Canonical
|
0Defined
|
|
F-COM — Commitment
|
4Commitments and Proofs
|
Canonical
|
0Defined
|
|
F-CP — Commit-and-prove
|
4Commitments and Proofs
|
Canonical
|
0Defined
|
|
F-MCOM — Multi-session commitment
|
4Commitments and Proofs
|
Canonical
|
0Defined
|
|
F-NIZK — Non-interactive zero knowledge
|
4Commitments and Proofs
|
Canonical
|
0Defined
|
|
F-NMCOM — Non-malleable commitment
|
4Commitments and Proofs
|
Canonical
|
1No canonical definition
|
|
F-SNARK — Weak NIZK, maulable arguments
|
4Commitments and Proofs
|
Canonical
|
0Defined
|
|
F-ZK — Zero knowledge
|
4Commitments and Proofs
|
Canonical
|
0Defined
|
|
F-acc — Accumulator
|
4Commitments and Proofs
|
Canonical
|
0Defined
|
|
F-eqv — Equivocal, adaptively secure commitment
|
4Commitments and Proofs
|
Canonical
|
1No canonical definition
|
|
F-COT — Correlated OT
|
5Oblivious Transfer and Correlated Randomness
|
Canonical
|
0Defined
|
|
F-GC — Garbled circuit
|
5Oblivious Transfer and Correlated Randomness
|
Open
|
1No canonical definition
|
|
F-OLE — Oblivious linear evaluation, batch
|
5Oblivious Transfer and Correlated Randomness
|
Canonical
|
0Defined
|
|
F-OPRF — Oblivious PRF, adaptive compromise
|
5Oblivious Transfer and Correlated Randomness
|
Canonical
|
0Defined
|
|
F-ORAM — Verifiable oblivious storage, honest client
|
5Oblivious Transfer and Correlated Randomness
|
Open
|
0Defined
|
|
F-OT — Oblivious transfer
|
5Oblivious Transfer and Correlated Randomness
|
Canonical
|
0Defined
|
|
F-PIR — Verifiable private information retrieval, single server
|
5Oblivious Transfer and Correlated Randomness
|
Emerging
|
0Defined
|
|
F-PSI — Private set intersection, one-sided output
|
5Oblivious Transfer and Correlated Randomness
|
Canonical
|
0Defined
|
|
F-A-SFE — Asynchronous SFE with eventual delivery
|
6Secret Sharing, Threshold Cryptography, MPC
|
Canonical
|
0Defined
|
|
F-ABB — Arithmetic black box
|
6Secret Sharing, Threshold Cryptography, MPC
|
Canonical
|
0Defined
|
|
F-DKG — Distributed key generation
|
6Secret Sharing, Threshold Cryptography, MPC
|
Canonical
|
0Defined
|
|
F-MPC — Reactive \(n\)-party computation with guaranteed termination
|
6Secret Sharing, Threshold Cryptography, MPC
|
Canonical
|
0Defined
|
|
F-SFE — Two-party secure function evaluation
|
6Secret Sharing, Threshold Cryptography, MPC
|
Canonical
|
1No canonical definition
|
|
F-TSIG — Threshold signature, unanimous
|
6Secret Sharing, Threshold Cryptography, MPC
|
Canonical
|
0Defined
|
|
F-VSS — Committed verifiable secret sharing, with spooling
|
6Secret Sharing, Threshold Cryptography, MPC
|
Canonical
|
0Defined
|
|
F-beacon — Randomness beacon
|
6Secret Sharing, Threshold Cryptography, MPC
|
Canonical
|
0Defined
|
|
F-coin — Coin tossing with abort
|
6Secret Sharing, Threshold Cryptography, MPC
|
Canonical
|
0Defined
|
|
F-fairSFE — Secure function evaluation with guaranteed termination
|
6Secret Sharing, Threshold Cryptography, MPC
|
Canonical
|
0Defined
|
|
F-incoerc — Incoercible, receipt-free computation
|
6Secret Sharing, Threshold Cryptography, MPC
|
Emerging
|
1No canonical definition
|
|
F-thdec — Threshold decryption of LWE ciphertexts
|
6Secret Sharing, Threshold Cryptography, MPC
|
Canonical
|
0Defined
|
|
F-BlSig — Blind signature
|
7Privacy and Anonymity
|
Canonical
|
0Defined
|
|
F-DAA — Direct anonymous attestation
|
7Privacy and Anonymity
|
Canonical
|
0Defined
|
|
F-GSig — Group signature, honest manager
|
7Privacy and Anonymity
|
Emerging
|
0Defined
|
|
F-MN — Mix-net, \(G_q\)-based
|
7Privacy and Anonymity
|
Canonical
|
0Defined
|
|
F-OR — Onion routing
|
7Privacy and Anonymity
|
Canonical
|
0Defined
|
|
F-VRF — Verifiable random function
|
7Privacy and Anonymity
|
Canonical
|
0Defined
|
|
F-rsig — Ring signature, six security levels in one box
|
7Privacy and Anonymity
|
Canonical
|
0Defined
|
|
F-TLP — Time-lock puzzle
|
8Time and Application Composites
|
Canonical
|
0Defined
|
|
F-chan — Ledger and virtual state channels, recursive
|
8Time and Application Composites
|
Canonical
|
0Defined
|
|
F-vote — Self-tallying election, five properties in one box
|
8Time and Application Composites
|
Canonical
|
0Defined
|