VAMPIRE

eBACS: ECRYPT Benchmarking of Cryptographic Systems


ECRYPT II
General information:IntroductioneBASHeBASCeBAEADeBATSSUPERCOPXBXComputersArch
How to submit new software:Tipshashstreamaeaddhkemencryptsign
List of primitives measured:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
Measurements:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
List of subroutines:verifydecodeencodesortcorehashblocksxofscalarmult

Measurements of public-key Diffie–Hellman secret-sharing systems on one machine: amd64; Haswell+AES (306c3); 2013 Intel Core i7-4770; 4 x 3400MHz; speed2supercop, supercop-20241022

[Page version: 20241120 00:41:13]

eBATS (ECRYPT Benchmarking of Asymmetric Systems) is a project to measure the performance of public-key systems. This page presents benchmark results collected in eBATS for public-key Diffie–Hellman secret-sharing systems:

Each table row lists the first quartile of many speed measurements, the median of many speed measurements, the third quartile of many speed measurements, and the name of the primitive. Measurements with large variance are indicated in red with question marks. The symbol T: (starting with supercop-20200816) means that the SUPERCOP database at the time of benchmarking did not list constant time as a goal for this implementation. The symbol T!!! means that constant time was listed as a goal for this implementation, but that the implementation failed TIMECOP. (TIMECOP failures are not necessarily security issues; they can sometimes be resolved by, e.g., declaring that a rejection-sampling condition is safe to declassify.)

There is a separate page with more information about each Diffie–Hellman system and each implementation. Designers and implementors interested in submitting new Diffie–Hellman systems and new implementations of existing systems should read the call for submissions.


Test results

Graphs: (pkcycles,pkbytes) (scycles,pkbytes)

Cycles to generate a key pair
25%50%75%system
275803195633076
T:
jacfp127i
280323262033776
T:
kumjacfp127g
333043590039468
T:
prjfp127i
323603616837400
T:
hecfp127i
364564068441940
T:
jacfp128bk
422324392847256
T:
curve2251
444324494045488
T:
gls254
453164578847004
T:
ecfp256e
449764849249608
T:
hecfp128fkt
446364866049752
T:
hecfp128bk
491964925249328
T:
gls254prot
435644945251916
T:
prjfp128bk
493204999251900
T:
ecfp256s
473245135652556
T:
hecfp128i
529485395657808
T:
ecfp256q
624086249662576
T:
kummer
634446358463688
T:
k277taa
715287163271856
T:
k298
890849030491152
T:
gls1271
968089685296920
T:
k277mon
110796110948111072
T:
kumfp127g
144364144408144460
T:
curve25519
157420157648159060
T:
kumfp128g
175192175400175596
T:
ed448goldilocks
210232211072212380
T:
ecfp256i
212724213468213992
T:
surf127eps
218596221728236636
T:
sclaus1024
240592241844243072
T:
ecfp256h
260692268500275628
T:
hector
280820280972281260
T:
nistp256
530548532956534164
T:
surf2113
99962410003721001176
T:
ed521gs
110080411101161116604
T:
sclaus2048
115731611577001158368
T:
nist521gs
152915615327361551576
T:
claus
Cycles to compute a shared secret
25%50%75%system
403924149241936
T:
gls254
490724912449176
T:
gls254prot
623686244862664
T:
kummer
633806346063568
T:
k277taa
713287141671644
T:
k298
966169666096716
T:
k277mon
112440112604113580
T:
kumfp127g
112604112672112756
T:
jacfp128bk
120452120568121248
T:
kumjacfp127g
139000139164139380
T:
prjfp128bk
145840145992146136
T:
hecfp128bk
150976151180151352
T:
hecfp128fkt
155928156032157172
T:
curve25519
158760159204159340
T:
curve2251
162776163016164056
T:
kumfp128g
185740186000186404
T:
jacfp127i
193544193640193748
T:
ecfp256e
201576201720201916
T:
ecfp256q
204912205088205264
T:
ecfp256i
206120207412207860
T:
surf127eps
212532214180223236
T:
gls1271
222680224540239764
T:
sclaus1024
226780227184230100
T:
prjfp127i
230348230628230912
T:
hecfp127i
234852235124235516
T:
ecfp256h
258648258836259044
T:
ecfp256s
326088326328326604
T:
hecfp128i
531576531828532064
T:
surf2113
538304538600548396
T:
ed448goldilocks
732052732392733072
T:
nistp256
856536864444873632
T:
hector
963432964168965360
T:
claus
100124410014481001776
T:
ed521gs
110875611132521124828
T:
sclaus2048
115706411574161157844
T:
nist521gs