Abstract
Due to the scalability of the stateless and compact JSON Web Tokens (JWT), they are increasingly used in securing modern applications to support single-sign-on context and establish trust in microservices or connected-devices architectures. However, currently JWT relies on traditional encryption algorithms that are based on integer factorization or discrete logarithm problems; this exposes JWT signatures to vulnerability when quantum computers become available. Recently, NIST has announced new standards which are quantum safe. In this paper, we investigate the usage of two quantum-resistant algorithms, which are NIST candidates of round 2 standardization process in 2019, to create and verify JWT signatures. Namely, we consider lattice-based schemes (DILITHIUM and qTESLA) and compare their performance against RSA for digital signature for different security levels defined by NIST. The results show that lattice-based digital signature schemes have better performance than RSA in terms of request per seconds and average response time. DILITHIUM has demonstrated the best performance while also having smaller performance loss when scaling the security level.
| Original language | English |
|---|---|
| Title of host publication | 2020 IEEE 91st Vehicular Technology Conference, VTC Spring 2020 - Proceedings |
| Publisher | Institute of Electrical and Electronics Engineers Inc. |
| ISBN (Electronic) | 9781728152073 |
| DOIs | |
| State | Published - May 2020 |
Publication series
| Name | IEEE Vehicular Technology Conference |
|---|---|
| Volume | 2020-May |
| ISSN (Print) | 1550-2252 |
Bibliographical note
Publisher Copyright:© 2020 IEEE.
ASJC Scopus subject areas
- Computer Science Applications
- Electrical and Electronic Engineering
- Applied Mathematics
Fingerprint
Dive into the research topics of 'Exploring Lattice-based Post-Quantum Signature for JWT Authentication: Review and Case Study'. Together they form a unique fingerprint.Cite this
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver