In this work we combine those, so far largely independent line of works. As a result, we achieve implementations of known, locally optimized, and new MDS matrices that significantly outperform all implementations from the literature. Interestingly, almost all previous locally optimized constructions behave very similar with respect to the globally optimized implementation.
As a side effect, our work reveals the so far best implementation of the AES MixColumns operation with respect to the number of XOR operations needed.
Category / Keywords: implementation / XOR Count and MDS and Linear Layer and Shortest Straight-Line Program and SAT Original Publication (with minor differences): IACR-FSE-2018 Date: received 27 Nov 2017, last revised 31 Mar 2020 Contact author: thorsten kranz at rub de, gregor leander@rub de, k stoffelen@cs ru nl, friedrich wiemer@rub de Available format(s): PDF | BibTeX Citation Note: fixed accents in previous version Version: 20200331:100434 (All versions of this report) Short URL: ia.cr/2017/1151