Research Article

Rejection Sampling Revisit: How to Choose Parameters in Lattice-Based Signature

Table 1

Forgery attack for parameters of CRYSTALS-Dilithium 3rd version.

ParametersDilithium: 1− −Dilithium: 1−Dilithium: 2Dilithium: 3Dilithium: 4Dilithium: 5+Dilithium: 5++

Weight of 24303949606060
Entropy of 135160192225257257257
Classical forgery attack135160192225257257257
Quantum forgery attack678096112128128128
Security claim5589112165229298343