Upper Bounds on the Min-Entropy of RO Sum, Arbiter, Feed-Forward Arbiter, and S-ArbRO PUFs.

Jeroen Delvaux,Dawu Gu,Ingrid Verbauwhede
DOI: https://doi.org/10.1109/asianhost.2016.7835572
2016-01-01
Abstract:The focus and novelty of this work is the derivation of tight upper bounds on the min-entropy of several physically unclonable funcions (PUFs), i.e., Ring Oscillator Sum, Arbiter, Feed-Forward Arbiter, and S-ArbRO PUFs. This constrains their usability for the fuzzy extraction of a secret key, as an alternative to storing keys in non-volatile memory. For example, it is shown that an ideal Arbiter PUF with 6 4 stages cannot provide more than 1 9 7 bits of min-entropy. At Financial Cryptography 2012, Van Herrewege et al. assume that 1 7 8 5 bits of min-entropy can be extracted, which renders their 128-bit key generator instantly insecure. We also derive upper bounds that comply with non-ideal PUFs, attributed to, e.g., manufacturing in silicon. As a side contribution hereby, we refute the claim that S-ArbRO PUFs are highly resistant against machine learning.
What problem does this paper attempt to address?