Asymmetric Cryptography · 非对称密码学
| English | 中文 | Pinyin · 拼音 |
|---|---|---|
| key pair/kiː peə/ | 密钥对 | mì yào duì |
| asymmetric encryption/ˌeɪsɪˈmetrɪk enˈkrɪpʃn/ | 非对称加密 | fēi duì chèn jiā mì |
| public key/ˈpʌblɪk kiː/ | 公钥 | gōng yào |
| private key/ˈpraɪvət kiː/ | 私钥 | sī yào |
| elliptic curve cryptography/ɪˈlɪptɪk kɜːv krɪpˈtɒɡrəfi/ | 椭圆曲线密码学 | tuǒ yuán qū xiàn mì mǎ xué |
The key pair
- Asymmetric encryption 非对称加密 uses a key pair 密钥对.
- A public key 公钥 anyone may see, and a private key 私钥 kept secret.
- The keys are mathematical inverses: what one locks, only the other unlocks.
密钥对
- 非对称加密(asymmetric encryption)使用一个密钥对(key pair)。
- 一个公钥(public key)任何人都可看,一个私钥(private key)保密。
- 这两个密钥是数学上的逆:一个锁上的,只有另一个能解开。
Sending a secret
- To send you a secret, I encrypt with your public key.
- Only your private key can decrypt it.
- We never had to share a secret key in advance.
发送秘密
- 要给你发一个秘密,我用你的公钥加密。
- 只有你的私钥能解密它。
- 我们从不需要事先共享一个秘密密钥。
Which key does the job? · 哪个密钥起作用?
Encrypt with the recipient's public key; only their private key decrypts. The private key stays secret. · 用接收者的公钥加密;只有其私钥能解密。私钥保持秘密。
To send Bob an encrypted message, you use... · 向Bob发送加密消息时,你使用……
Encrypt with the recipient's public key. · 用接收者的公钥加密。
Asymmetric encryption's big advantage over symmetric is that it... · 非对称加密相比对称加密的最大优势在于它……
No shared secret needs to be exchanged first. · 无需预先交换共享密钥。
A public key and its matching private key together form a key ____. · 公钥及其匹配的私钥共同构成一个密钥 ____。
They are a mathematically linked key pair. · 它们是一对数学关联的密钥对。
Which are asymmetric encryption algorithms? (Choose all) · 哪些是非对称加密算法?(多选)
AES is symmetric, not asymmetric. · AES是对称的,不是非对称的。
Key length and algorithms
- Longer keys mean larger keyspaces and more security, but slower.
- Common algorithms: RSA and elliptic curve cryptography (ECC) 椭圆曲线密码学.
- Compare key lengths only within the same algorithm.
密钥长度与算法
- 更长的密钥意味着更大的密钥空间和更多安全,但更慢。
- 常见算法:RSA 和椭圆曲线密码学(elliptic curve cryptography)。
- 只在同一算法内比较密钥长度。
The direction matters. To send someone a secret, you use their public key (not yours). Only their matching private key can open it. Mixing up whose key to use is the most common mistake here.
方向很重要。要给某人发秘密,你用他们的公钥(不是你的)。只有他们匹配的私钥能打开它。搞混用谁的密钥是这里最常见的错误。
The private key must be kept secret and never shared. · 私钥必须保密且绝不可共享。
Security rests on the private key staying secret. · 安全性取决于私钥保持秘密。
Asymmetric encryption solves symmetric's key-sharing problem. Bob publishes his public key for the world. Anyone can encrypt a message to Bob with it, but only Bob's secret private key can decrypt it — no secret ever had to be exchanged first.
非对称加密解决了对称加密的密钥分享问题。Bob把他的公钥向全世界发布。任何人都能用它加密发给Bob的消息,但只有Bob的秘密私钥能解密它——从不需要先交换任何秘密。
Asymmetric encryption uses a public/private key pair. Encrypt with the recipient's public key; only their private key decrypts — solving symmetric's key-sharing problem. Algorithms: RSA, ECC. Longer keys are safer; compare lengths only within one algorithm.
非对称加密使用一个公钥/私钥对。用接收者的公钥加密;只有他们的私钥能解密——解决了对称加密的密钥分享问题。算法:RSA、ECC。更长的密钥更安全;只在一个算法内比较长度。