Javascript must be enabled to continue!
Discussion on the Full Entropy Assumption of the SP 800-90 Series
View through CrossRef
NIST SP 800-90 series support the generation of high-quality random bits for cryptographic and non-cryptographic use. The security of a random number generator depends on the unpredictability of its outputs, which can be measured in terms of entropy. NIST SP 800-90 series uses min-entropy to measure entropy. A full-entropy bitstring has an amount of entropy equal to its length. Full-entropy bitstrings are important for cryptographic applications, as these bitstrings have ideal randomness properties and may be used for any cryptographic purpose. Due to the difficulty of generating and testing full-entropy bitstrings, SP 800-90 series assume that a bitstring has full entropy if the amount of entropy per bit is at least 1 - ε, where ε is at most 2-32. This report provides a justification for the selection of ε. This is accomplished as follows. The report begins by defining full entropy in terms of a hypothetical distinguishing game. The report then derives two results following from this definition. First, it is shown how output satisfying this definition can be generated using a conditioning function acting on data having a known entropy level. Second, the actual entropy level of output produced by such a process is computed, thereby providing support for the selected value of ε.
Title: Discussion on the Full Entropy Assumption of the SP 800-90 Series
Description:
NIST SP 800-90 series support the generation of high-quality random bits for cryptographic and non-cryptographic use.
The security of a random number generator depends on the unpredictability of its outputs, which can be measured in terms of entropy.
NIST SP 800-90 series uses min-entropy to measure entropy.
A full-entropy bitstring has an amount of entropy equal to its length.
Full-entropy bitstrings are important for cryptographic applications, as these bitstrings have ideal randomness properties and may be used for any cryptographic purpose.
Due to the difficulty of generating and testing full-entropy bitstrings, SP 800-90 series assume that a bitstring has full entropy if the amount of entropy per bit is at least 1 - ε, where ε is at most 2-32.
This report provides a justification for the selection of ε.
This is accomplished as follows.
The report begins by defining full entropy in terms of a hypothetical distinguishing game.
The report then derives two results following from this definition.
First, it is shown how output satisfying this definition can be generated using a conditioning function acting on data having a known entropy level.
Second, the actual entropy level of output produced by such a process is computed, thereby providing support for the selected value of ε.
Related Results
Entropy and Wealth
Entropy and Wealth
While entropy was introduced in the second half of the 19th century in the international vocabulary as a scientific term, in the 20th century it became common in colloquial use. Po...
A Generalized Measure of Cumulative Residual Entropy
A Generalized Measure of Cumulative Residual Entropy
In this work, we introduce a generalized measure of cumulative residual entropy and study its properties. We show that several existing measures of entropy such as cumulative resid...
Numerical Study on Entropy Generation of the Multi-Stage Centrifugal Pump
Numerical Study on Entropy Generation of the Multi-Stage Centrifugal Pump
The energy loss of the multi-stage centrifugal pump was investigated by numerical analysis using the entropy generation method with the RNG k-ε turbulence model. Entropy generation...
Can remotely-sensed Earth’s entropy production reveal its ecological fitness?
Can remotely-sensed Earth’s entropy production reveal its ecological fitness?
It is straightforward to analyse Earth´s fitness in terms of controlling and governing global warming due to human emissions of greenhouse gasses. We make room, however, f...
Implementasi Metode SAW dan Entropy pada Pemilihan Armada Travel
Implementasi Metode SAW dan Entropy pada Pemilihan Armada Travel
Abstract. Travel is a mode of transportation that can be used to travel the Jakarta – Bandung route. Many travel fleets that can be the user's choice. Errors in selecting travel fl...
A Benchmark for Entropy Estimators
A Benchmark for Entropy Estimators
This study assessed the performance of several entropy estimators for numerical time series and symbolic data on non-trivial one-dimensional dynamical systems whose Kolmogorov–Sina...
Cross-Subject Emotion Recognition Using Fused Entropy Features of EEG
Cross-Subject Emotion Recognition Using Fused Entropy Features of EEG
Emotion recognition based on electroencephalography (EEG) has attracted high interest in fields such as health care, user experience evaluation, and human–computer interaction (HCI...
On Quantum Entropy
On Quantum Entropy
Quantum physics, despite its intrinsically probabilistic nature, lacks a definition of entropy fully accounting for the randomness of a quantum state. For example, von Neumann entr...

