SLIDE 22 Rainbow - Summary
no weaknesses found since 2007 efficient, much faster than RSA suitable for low cost devices shorter signatures and smaller key sizes than UOV
Parameters
security parameters public key private key hash size signature level (bit) F, v1, o1, o2 size (kB) size (kB) (bit) (bit) 80 F16,20,20,20 33.4 22.3 160 228 F256,19,12,13 25.3 19.3 200 352 100 F16,25,25,25 65.9 43.2 200 288 F256, 27,16,16 57.2 44.3 256 472 128 F16,32,32,32 136.6 87.6 256 368 F31,28,28,28 123.2 74.5 280 420 F256,36,21,22 136.0 102.5 344 632 192 F16,48,48,48 475.9 301.8 384 564 F31,44,40,40 360.1 245.2 420 630 256 F16,64,64,64 1,194.4 763.9 512 776
B.-Y. Yang (Academia Sinica) UOV and Rainbow PQC Exec. Summer School 13 / 14