WO2016016741A1 - True random number generator - Google Patents

True random number generator Download PDF

Info

Publication number
WO2016016741A1
WO2016016741A1 PCT/IB2015/054077 IB2015054077W WO2016016741A1 WO 2016016741 A1 WO2016016741 A1 WO 2016016741A1 IB 2015054077 W IB2015054077 W IB 2015054077W WO 2016016741 A1 WO2016016741 A1 WO 2016016741A1
Authority
WO
WIPO (PCT)
Prior art keywords
random number
photon
number generator
spad
sampling means
Prior art date
Application number
PCT/IB2015/054077
Other languages
French (fr)
Inventor
Lorenzo Pavesi
Paolo BETTOTTI
Massimo CAZZANELLI
Leonardo Gasparini
Nicola Massari
Georg Pucker
Anna RIMOLDI
Massimiliano Sala
Alessandro Tomasi
Original Assignee
Trentino Sviluppo S.P.A.
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Trentino Sviluppo S.P.A. filed Critical Trentino Sviluppo S.P.A.
Priority to ES15734727T priority Critical patent/ES2703983T3/en
Priority to CN201580041632.5A priority patent/CN106687916B/en
Priority to US15/329,961 priority patent/US10146508B2/en
Priority to KR1020177002962A priority patent/KR101975125B1/en
Priority to EP15734727.9A priority patent/EP3175354B1/en
Publication of WO2016016741A1 publication Critical patent/WO2016016741A1/en

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F7/00Methods or arrangements for processing data by operating upon the order or content of the data handled
    • G06F7/58Random or pseudo-random number generators
    • G06F7/588Random number generators, i.e. based on natural stochastic processes
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F17/00Digital computing or data processing equipment or methods, specially adapted for specific functions
    • G06F17/10Complex mathematical operations
    • G06F17/11Complex mathematical operations for solving equations, e.g. nonlinear equations, general mathematical optimization problems

Definitions

  • the detected photon flow ⁇ , the characteristics of the SPAD detectors and the bit extraction modes determine the final performance of the generator.
  • FIG. 1b shows a schematic axonometric view of the array of detectors of the random number generator of the invention
  • the value assumed by said binary sequence depends on the specific time portion within which said detected arrival time t falls.
  • Each one of said groups 31 of SPAD detectors 311 is managed independently of the remaining groups 31 by special electronic sampling means 4 mentioned above.
  • said generator 1 may comprise a single SPAD detector 311.
  • this is preferably but not necessarily made in a direct manner.
  • Said direct coupling advantageously makes it possible to maximize the photon flow incident on the sensitive surfaces of the array 3 of SPAD detectors 311. Furthermore, it makes it possible to avoid any possible bias of the statistical distribution that may occur in different architectures using a splitter of the photon flow if said splitter is not correctly balanced.
  • the direct coupling makes it easier to control the instrument and makes it possible to avoid significant deviations from the initial operating conditions due to drifts.
  • said direct coupling makes it possible to simplify the architecture of the random number generator 1 of the invention, as there is no need to manufacture an optical circuit integrated between said two components.

Abstract

The invention is a random number generator (1) comprising a photon source (2) and one or more photon detectors of the SPAD type (311) configured to detect a photon flow equal to λ, wherein said photons are generated by the photon source (2). The random number generator (1) furthermore comprises electronic sampling means (4). Said electronic sampling means (4) are configured in such a way as to detect the arrival time t of a photon incident on each SPAD photon detector (311) for each one of the observation windows T w , and are also configured in such a way as to convert the arrival time t into a binary sequence. In said generator of the invention the photon source (2) and the electronic sampling means (4) are configured in such a way that the product λ*T w is lower than or equal to 0.01.

Description

TRUE RANDOM NUMBER GENERATOR
DESCRIPTION
The present invention concerns a random number generator (RNG), in particular a true random number generator (TRNG), of the improved type. It is known that random number generators are presently used in several applications ranging from the field of science to that of cryptodiagramy.
In the first case, a typical example is that of computational science, which requires the generation of a certain number of initial random states serving as a description of the initial state of the simulation.
This type of application generally requires that the initial configurations are not strictly correlated with one another, but that they can be reproduced in a deterministic manner in order to make it possible to verify, for example, the effect of variations on the codes that carry out the simulations. For this reason, these sequences are more correctly defined as pseudo random numbers (PRN), because they are defined through complex algorithms that start from an initial value. In other words, given an initial random number, which in technical jargon is called "seed", a formula, even if very complex, will constantly reproduce the same sequence of random numbers. The corresponding generators are defined as pseudo random number generators (PRNG).
On the contrary, in the second case, that is, in the case of use of random numbers in cryptodiagramy techniques for the execution, for example, of banking operations, this approach is weak, as it is necessary to ensure the total unpredictability of the generated sequences, in such a way as to keep highly sensitive information safe. In this case, the safest approach can be achieved through the generation of random numbers obtained from a generation process that is really random and does not allow the generated sequence to be predicted in any way. These generators, in fact, are known as true random number generators (TRNG). In particular, the quantum mechanisms, like for example the generation of photons by a light source, are among the most investigated methods for obtaining said sequences of true random numbers and are based on the indetermination of the measured event which is inherent in the properties of the quantum system itself.
From the point of view of the theory of information, the level of unpredictability of the random numbers generated through both of said two techniques can be expressed by means of the parameter defined as "entropy", which in fact is known as the measure of uncertainty or information in a random variable. Furthermore, it is important to underline that the National Institute of Standards and Technology (NIST) with its directive NIST SP800-22 specifies approximately fifteen statistical tests that make it possible to determine whether a given random number generator has a sufficient level of entropy or not.
As already mentioned, the use of pseudo random number generators for cryptodiagramy purposes is risky, not only because certain algorithms have weaknesses that potentially are revealed only some time after their introduction, but also because if an ill-intentioned subject should recover the seed from which all the random sequences are generated, all the successive outputs based on the same seed could be predicted with absolute certainty. A solution based on physical and in particular quantum phenomena is therefore highly preferable, given the intrinsic unpredictability of these events, even for subjects having a perfect knowledge of the algorithms used and having a high calculation capacity at their disposal. However, while the algorithms for the generation of pseudo random numbers can be selected to create sequences having some statistical properties determined with absolute certainty owing, in fact, to their deterministic nature, the random numbers obtained starting from physical phenomena are subject to practical limitations due, for example, to variations in the instrument manufacturing quality, to fluctuations in power supply, to environmental factors such as external fields and sudden temperature changes. In general, these deviations from the ideal case determine a deviation from a uniform and independent statistic distribution of the events that can be measured in a sample space. Consequently, it is possible to observe a lower level of entropy also in said true random number generators.
In order to avoid the above, said true random number generators need a further step, called a "post-processing" step, performed downstream of the extraction of the sequence of random codes starting from the specific physical phenomenon. This post-processing step, in fact, makes it possible to improve the uniformity of probability distribution of the sequence of random codes. However, to disadvantage, said post-processing step affects the so-called "bit rate" that can be ensured by the generator.
It is also known, as already mentioned above, that one of the physical phenomena that are most exploited for the generation of true random numbers is quantum photonics. For this reason, said generators belonging to the macro category of TRNG generators are also indicated more specifically by the acronym QRNG (Quantum Random Number Generator). In these generators, in fact, an attenuated light source generates few photons (low value of the detected photon flow λ ) that are acquired by one or more detectors of individual photons, each one of which is known by the acronym SPAD (Single Photon Avalanche Diode). Furthermore, the system is provided with specific electronic circuitry located downstream of said SPADs, usually one or more TDCs (Time to Digital Converter), capable of extracting a random sequence of bits from each one of said SPADs. More precisely, in these generators the photons obey to a Poisson process, meaning that the acquired events are independent of one another and that the probability of counting n photons within an observation window Tw follows the Poisson distribution:
Figure imgf000005_0001
where λ indicates, in fact, the detected photon flow.
The detected photon flow λ, the characteristics of the SPAD detectors and the bit extraction modes determine the final performance of the generator.
The above having been stated, different types of random number generators based on the QRNG concept are available on the market. These generators, in particular, cover a wide variety of applications, ranging from USB portable devices that offer just a few hundred kbits to large electronic systems capable of guaranteeing a bit rate of hundreds of Mbits. In literature, furthermore, different logic structures and architectures have been proposed for determining the sequences of true random numbers starting from a physical phenomenon, in particular from the detection of photons. Most of them detect the "arrival time" or the number of photons incident on the sensitive surface of the SPAD generator/generators.
In particular, as regards the technique based on the so-called arrival time, a proposal has been made according to which the time elapsing between the moment when a photon is incident on an individual SPAD and the moment when the successive photon is incident on the same SPAD should be measured. These measurements are successively ordered within adjacent time portions with the same duration into which the observation window Tw of each SPAD is subdivided. Based on the time portion within which said measurement fails, a corresponding random sequence of bits is generated and extracted.
However, although this technique makes it possible to obtain a high bit rate, it has a considerable bias due to the fact that, as already explained, the photon source obeys to said Poisson process.
According to the known art, in order to overcome the above mentioned drawback action should be taken directly on the photon source, appropriately checking the photon flow generated by the same photon source. This operation, in particular, includes the step of varying the bias current of the photon source in such a way as to make its statistical distribution over time as uniform as possible.
However, to disadvantage, according to this approach, special electronic circuitry capable of varying the bias current of the photon source, as described above, need to be introduced in the generator, which increases the complexity and the size of the generator itself.
The present invention intends to overcome the drawbacks mentioned above. In particular, the invention has the purpose to provide a true random number generator that makes it possible to guarantee a high level of entropy in such a way as to pass at least the NIST statistical tests.
It is a further object of the invention to provide a true random number generator that makes it possible to obtain a high bit rate in the generation of random bit sequences.
It is another object of the invention to provide a true random number generator whose structure is more compact, less complex and requires less energy consumption compared to the random number generators of the known art. Again, it is another object of the invention to provide a true random number generator with a high level of safety against any tampering with its internal components.
It is another, yet not the least object of the invention to provide a true random number generator that is more economical than the generators of the known art. The objects mentioned above are achieved by the true random number generator having the characteristics described in the main claim.
In particular, the true random number generator of the invention, comprising a photon source with detected photon flow λ and electronic sampling means with sampling windows Tw, is characterized in that said photon source and said electronic sampling means are configured in such a way that the product λ*TW is lower than or equal to 0.01.
Further characteristics of the true random number generator of the invention are described in the dependent claims.
In particular, the fact that the components that make up the true random number generator of the invention are made so that they are integrated in a single silicon substrate, as explained in the dependent claim 5, advantageously makes it possible to obtain a generator that is more compact and less subject to tampering than the generators of the known art.
The said objects, together with the advantages that will be described here below, are highlighted in the description of a preferred embodiment of the invention that is provided by way of non-limiting example with reference to the attached drawings, wherein:
- Figure 1 a shows a schematic view of the architecture of the random number generator of the invention;
- Figure 1b shows a schematic axonometric view of the array of detectors of the random number generator of the invention;
- Figure 2 shows an observation window with duration Tw subdivided in r time portions having the same duration;
- Figure 3 shows first diagrams relating to the distribution of probability for different values of the product λ*TW, in particular for different values of λ;
- Figure 4 shows second diagrams relating to the distribution of probability for different values of the product λ*TW, in particular for different values of Tw.
The random number generator (RNG) that is the subject of the invention, in particular the true random number generator (TRNG) of the invention, is schematically represented in Figure 1a, where it is indicated by 1.
As can be observed in Figure 1a, the random number generator 1 of the invention comprises a photon source 2 having a detected photon flow equal to λ.
According to the preferred embodiment of the invention, the random number generator 1 furthermore comprises, as shown in Figure 1b, an array 3 of photon detectors 311 of the SPAD type. In particular, as already mentioned above, a single SPAD detector 311 is capable of collecting and supplying as on output the information concerning the incidence of a single photon on its sensitive surface and possibly the arrival time of said single photon within an observation window with pre-established duration Tw. Between two successive observation windows Tw, the SPAD detector 311 undergoes a processing step during which the initial conditions are restored, called dead time Tdead in technical jargon, during which the same SPAD 311 cannot detect any photon.
The random number generator 1 of the invention, as schematically shown in Figure 1a, comprises also electronic sampling means 4 operatively connected to said array 3 of SPAD detectors 311.
Said electronic sampling means 4 are configured to detect the arrival time t of a photon incident on each one of the SPAD detectors 311 belonging to the array of SPAD detectors 3, for each one of the observation windows Tw.
Furthermore, the same electronic sampling means 4 are configured in such a way as to convert each detected arrival time t into a binary sequence with length equal to n - log2 r, where r represents the number of time portions having the same duration into which each observation window with duration
Tw is subdivided in advance, as schematically shown in Figure 2.
The value assumed by said binary sequence depends on the specific time portion within which said detected arrival time t falls.
According to the invention, the photon source 2 and the electronic sampling means 4 are configured in such a way that the product λ*TW between the detected photon flow λ and the duration Tw of each observation window is lower than or equal to 0.01.
As shown here below, said characteristics advantageously makes it possible to obtain a distribution of probability of the arrival times of the photons that is essentially linear and substantially uniform. Consequently, said relationship between said two quantities λ and Tw makes it possible to increase the entropy level of the random number generator 1 of the invention.
In particular, it has been shown that, preferably but not necessarily, in the case where the instruments used are not the ideal solution, a greater uniformity of the distribution of probability of the arrival time of the photons, and therefore a higher entropy level of the generator 1 of the invention, are obtained with a value of said product λ*TW lower than or equal to 0.001.
Said values have been determined by means of theoretical analyses, Monte Carlo simulations and empirical measurements, which have made it possible to establish that the random number generator 1 of the invention, configured as described above, has a level of entropy that is at least sufficient to pass the NIST statistical tests.
In particular, the analysis carried out was based on two assumptions. The first concerns the fact that in a Poisson process, like the one to which the photons generated by the light source 2 obey, the difference between any random time and the successive event follows an exponential distribution of the type
Figure imgf000009_0003
where λ is the number of detected events. The second assumption is that the most reliable measurement of the deviation from a uniform statistical distribution, in the case where the observation window Tw is subdivided into a plurality of said time portions r, is obtained by means of the so-called total variation distance (TVD).
In greater detail, the value of said total variation distance is equal to:
Figure imgf000009_0001
where P and Q are two probability measures defined in the sample space Ω of measurable events ω.
The above having been explained, it can be easily shown that by subdividing said exponential distribution into said number r of time portions having the same duration, if the first time portion comprises the interval ti, then the mth time portion r will represent the time interval t ε [(m-1)ti, mtj) and will comprise a probability density equal to:
Figure imgf000009_0002
where ε (t; λ) is the cumulative distribution function of an exponential random variable with rate parameter λ at time t.
Figure 3 shows the graphic results obtained through the simulation, respectively, of the exponential distribution of probability and of the probability density for different values of λ, with a number of time portions r equal to 10 and with an observation window Tw with unit value. It can be understood from that equation and above all from said diagrams that as the value of the detected photon flow λ decreases, the probability density tends to straighten.
Furthermore, the value of the TVD, in said conditions, is proportional to the photon count. In particular, a TDV * 0.01, considered acceptable, is obtained with the product λTW = 1/100.
Figure 4 shows a further graphic representation of the probability density distribution, in this case maintaining the detected photon flow λ constant, for example at 106 counts/s and varying the duration Tw of the observation window. In particular, in the first diagram on the left the observation window Tw has been selected so that it is equal to 0.1 ns, in the second diagram Tw = 1 ns, while in the last diagram on the right Tw > 10 ns. It is evident that with Tw = 0.1 ns the distribution is essentially uniform, with Tw - 1 ns the distribution is substantially linear, while with Tw > 10 ns the distribution is neither uniform nor linear, with a consequent reduction of the entropy level of the system. Also in this case, as is evident, the best result is obtained when the product λTW is equal to 106 * (0.1 *10 -9) = 0.01.
In this way it has been shown that, according to the invention, by configuring the product λTW between the detected photon flow λ and the duration Tw of the observation window of the generator 1 so that it is equal to or lower than 0.01 a substantially uniform distribution is obtained and, therefore, the generator 1 has a high entropy level.
Returning to the architecture of the random number generator 1, according to the preferred embodiment of the invention said photon source 2 and the array 3 of SPAD detectors 311 are made in such a way that they are integrated in a single silicon substrate 5.
In greater detail, the photon source 2 and the array 3 of SPAD detectors 311 are made on said silicon substrate 5 through the technique of microfabrication of CMOS integrated circuits.
Advantageously, said integration allows the random number generator 1 of the invention to be constructed in such a way that it is more compact and structurally less complex than the generators of known type.
In particular, according to the preferred embodiment of the invention, the photon source 2 is a LED device 21. For this reason, said integrated LED device 21 is called Si-LED 21. It cannot be excluded, however, that in different embodiments of the invention said photon source 2 can be a LED device of the discrete type installed on a support card belonging to the random number generator 1 of the invention or the same photon source 2 can be of a type different from a LED device. According to the preferred embodiment of the invention, the array 3 of SPAD detectors 311 is subdivided in groups 31 of SPAD detectors 311, each group 31 comprising a predefined number of SPAD detectors 311.
Each one of said groups 31 of SPAD detectors 311 is managed independently of the remaining groups 31 by special electronic sampling means 4 mentioned above.
Said independent management of the various groups 31 of SPAD detectors 311 advantageously makes it possible to parallelize the extraction of the random binary sequences from the random number generator 1, thus increasing the bit rate of the latter.
It cannot be excluded, however, that in different embodiments of the invention said array 3 of SPAD detectors 311 is not subdivided in groups 31 of SPAD detectors 311, but is controlled by common electronic sampling means 4.
Furthermore, it cannot be excluded that in an alternative embodiment of the invention said generator 1 may comprise a single SPAD detector 311.
Regarding the coupling between said Si-LED 21 and the array 3 of SPAD detectors 311, this is preferably but not necessarily made in a direct manner. Said direct coupling advantageously makes it possible to maximize the photon flow incident on the sensitive surfaces of the array 3 of SPAD detectors 311. Furthermore, it makes it possible to avoid any possible bias of the statistical distribution that may occur in different architectures using a splitter of the photon flow if said splitter is not correctly balanced. In practice, the direct coupling makes it easier to control the instrument and makes it possible to avoid significant deviations from the initial operating conditions due to drifts. Finally, still advantageously, said direct coupling makes it possible to simplify the architecture of the random number generator 1 of the invention, as there is no need to manufacture an optical circuit integrated between said two components.
It cannot be excluded, however, that in different embodiments of the invention the coupling between the Si-LED 21 and the array 3 of SPAD detectors 311 can be obtained in an indirect manner, through the interposition of suitable waveguides.
As already mentioned above, according to the preferred embodiment of the invention each group 31 of SPAD detectors 311 is operativeiy connected with its own electronic sampling means 4. In particular, said electronic sampling means 4, associated with a specific group 31 of SPAD detectors 311, are configured to detect the arrival time f of a photon incident on each SPAD 311 and also to identify on which SPAD detector 311 said photon is incident at the arrival time t. This characteristic, thanks to which it is possible to identify the specific SPAD detector 311 on which the photon is incident, advantageously makes it possible to know the distribution of each element belonging to the group of SPADs 31, even if common electronic sampling means 4 are used.
Therefore, the use of electronic sampling means 4 that are shared by a group 31 of SPAD detectors 311 and at the same time are capable of determining on which one of said detectors 311 a photon is incident at a given arrival time t, makes it possible to maintain a high level of entropy of the entire random number generator 1 of the invention and at the same time to reduce the size of the latter.
It cannot be excluded, however, that in alternative embodiments of the invention said electronic sampling means 4 are shared by the entire array 3 of SPAD detectors 311 or that each SPAD detector 311 is provided with its own electronic sampling means 4.
Furthermore, according to the preferred embodiment of the invention, each one of said electronic sampling means 4 comprises a TDC device (Time to Digital Converter) 41.
Finally, always according to the preferred embodiment of the invention, also said electronic sampling means 4 are made in such a way that they are integrated in said silicon substrate 5.
Preferably but not necessarily, the random number generator 1 of the invention furthermore comprises electronic post-processing means 6 configured to receive the binary sequences extracted from said electronic sampling means 4 as an output, said electronic sampling means being in turn associated with each one of said groups 31 of SPAD detectors 311.
Furthermore, said electronic post-processing means 6 are configured to process said binary sequences in such a way as to carry out a so-called "whitening" cycle. The term "whitening" indicates an operation of decorrelation capable of transforming sequences of random binary codes possibly bound by a covariance matrix M into new sequences of random binary codes whose covariance is the identity matrix. In other words, said new sequences of random binary codes are uncorrelated and they all have a variance value equal to 1. Consequently, to advantage, said further post-processing step makes it possible to further increase the entropy level of the same random number generator 1 of the invention.
By way of example, said electronic post-processing means 6 are configured to process the binary sequences received as an input through the Von Neumann algorithm.
It cannot be excluded, however, that in different embodiments of the invention said electronic post-processing means 6 can be configured to process said binary sequences through a hash function algorithm, a block cipher algorithm, or multiplications by a matrix created specifically for this purpose, provided that they are capable of further increasing the entropy of the random number generator 1 of the invention per output bit.
According to the above, therefore, the random number generator 1 of the invention achieves all of the set objects.
In particular, it achieves the object to provide a true random number generator that makes it possible to ensure a high entropy level, in such a way as to pass at least the NIST statistical tests.
Furthermore, the invention also achieves the object to provide a true random number generator that makes it possible to obtain a high bit rate in the generation of random bit sequences.
The invention also achieves the object to provide a true random number generator that has a more compact and less complex structure and requires less energy consumption compared to the random number generators of the known art.
The invention furthermore achieves the object to provide a true random number generator having a high level of safety against any tampering with its internal components.
Finally, the invention also achieves the object to provide a true random number generator that is more economical than the generators of the known art.

Claims

1 ) Random number generator (1) of the type comprising:
- a photon source (2);
- one or more photon detectors of the SPAD type (311 ) configured in such a way as to detect a flow of photons equal to λ, said photons being generated by said photon source (2);
- electronic sampling means (4) configured in such a way as to detect the arrival time t of a photon incident on each one of said SPAD photon detectors (311 ) for each one of said observation windows with duration Tw, said electronic sampling means (4) being furthermore configured in such a way as to convert said arrival time t into a binary sequence with length equal to n = log2 r, r being the number of time portions having the same duration into which each one of said observation windows with duration Tw is subdivided, said binary sequence assuming a value that depends on the specific time portion within which said arrival time t falls,
characterized in that said photon source (2) and said electronic sampling means (4) are configured in such a way that the product λ*TW between the detected photon flow λ and the duration Tw of each observation window is less than or equal to 0.01.
2) Random number generator (1) according to claim 1 , characterized in that said photon source (2) and said electronic sampling means (4) are configured in such a way that the product λ*TW between the detected photon flow λ and the duration Tw of each observation window is less than or equal to 0.001.
3) Random number generator (1) according to any of the preceding claims, characterized in that it comprises an array (3) of SPAD photon detectors (311 ) subdivided into several groups (31 ), each one of said groups (31 ) being operatively connected to its own electronic sampling means (4) configured in such a way as to identify the SPAD detector (311 ) on which a photon has been detected at a specific arrival time t, independently of the electronic sampling means (4) associated with other groups (31 ) of SPAD detectors (311 ).
4) Random number generator (1) according to any of the preceding claims, characterized in that said electronic sampling means (4) comprise one or more TDC (Time to Digital Converter) (41 ). 5) Random number generator (1) according to any of the preceding claims, characterized in that said photon source (2) and said one or more SPAD photon detectors (311 ) are made so that they are integrated in a single silicon substrate (5).
6) Random number generator (1) according to claim 5, characterized in that said photon source (2) and said one or more SPAD photon detectors (311) are made on said silicon substrate (5) through the technique of microfabrication of CMOS integrated circuits.
7) Random number generator (1) according to any of the preceding claims, characterized in that said photon source (2) is a Si-LED component
(21) made on said silicon substrate (4).
8) Random number generator (1) according to any of the preceding claims, characterized in that it comprises electronic post-processing means (6) configured so as to receive said binary sequences extracted by said electronic sampling means (4) as an input and to process said binary sequences in such a way as to increase the entropy value per output bit of said generator (1).
9) Random number generator (1) according to claim 8, characterized in that said electronic post-processing means (6) are configured so as to process said binary sequences through a Von Neumann algorithm.
10) Random number generator (1) according to claim 8, characterized in that said electronic post-processing means (6) are configured so as to process said binary sequences through a hash function algorithm.
PCT/IB2015/054077 2014-07-30 2015-05-29 True random number generator WO2016016741A1 (en)

Priority Applications (5)

Application Number Priority Date Filing Date Title
ES15734727T ES2703983T3 (en) 2014-07-30 2015-05-29 Real random number generator
CN201580041632.5A CN106687916B (en) 2014-07-30 2015-05-29 True Random Number Generator
US15/329,961 US10146508B2 (en) 2014-07-30 2015-05-29 True random number generator
KR1020177002962A KR101975125B1 (en) 2014-07-30 2015-05-29 True random number generator
EP15734727.9A EP3175354B1 (en) 2014-07-30 2015-05-29 True random number generator

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
ITVI2014A000200 2014-07-30
ITVI20140200 2014-07-30

Publications (1)

Publication Number Publication Date
WO2016016741A1 true WO2016016741A1 (en) 2016-02-04

Family

ID=51655974

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/IB2015/054077 WO2016016741A1 (en) 2014-07-30 2015-05-29 True random number generator

Country Status (6)

Country Link
US (1) US10146508B2 (en)
EP (1) EP3175354B1 (en)
KR (1) KR101975125B1 (en)
CN (1) CN106687916B (en)
ES (1) ES2703983T3 (en)
WO (1) WO2016016741A1 (en)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106980490A (en) * 2017-05-10 2017-07-25 李昀芊 A kind of real random number generator based on fluid molecule Brownian movement
IT201600106164A1 (en) * 2016-10-21 2018-04-21 Trentino Sviluppo Spa GENERATOR OF RANKED NUMBERS OF A PERFECT TYPE, IN PARTICULAR GENERATOR OF REALIZED NUMBERS OF A PERFECT TYPE
US10537201B2 (en) 2015-06-16 2020-01-21 Societe Des Produits Nestle S.A. Beverage production system using capsules

Families Citing this family (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US10146508B2 (en) * 2014-07-30 2018-12-04 Trentino Sviluppo S.P.A. True random number generator
WO2017193106A1 (en) * 2016-05-05 2017-11-09 Amri Emna Quanta image sensor quantum random number generation
KR101920190B1 (en) * 2016-11-22 2019-02-08 한국인터넷진흥원 A method and apparatus for generating a random ip
EP3525085A1 (en) * 2018-02-12 2019-08-14 Siemens Aktiengesellschaft Testing of physical random number generators
KR102483374B1 (en) * 2018-05-11 2022-12-30 한국전자통신연구원 Apparatus and method for generating quantum random number
CN109617684B (en) * 2018-12-26 2021-07-13 绍兴心越科技有限公司 Self-repairing active defense type true random number generation device and generation method
CN110569022B (en) * 2019-09-09 2022-12-27 弦海(上海)量子科技有限公司 All-silicon-based CMOS quantum random number generator
US10901695B1 (en) * 2020-03-03 2021-01-26 Randaemon Sp. Z O.O. Apparatus, systems, and methods for beta decay based true random number generator
DE102020206883A1 (en) 2020-06-03 2021-12-09 Fraunhofer-Gesellschaft zur Förderung der angewandten Forschung eingetragener Verein Generation of random numbers
DE102020214998A1 (en) 2020-11-27 2022-06-02 Fraunhofer-Gesellschaft zur Förderung der angewandten Forschung eingetragener Verein Quantum random number generator and method with direct random number extraction from multi-event histograms
KR102489804B1 (en) * 2020-12-15 2023-01-18 현대모비스 주식회사 Method for generating random number using spad

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2002091147A1 (en) * 2001-05-09 2002-11-14 Magiq Technologies, Inc. Efficient use of detectors for random number generation
GB2457328A (en) * 2008-02-05 2009-08-12 Toshiba Res Europ Ltd Random number generation using photon detection events

Family Cites Families (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP1766509A1 (en) * 2004-04-19 2007-03-28 Soreq Nuclear Research Center High-speed, true random-number generator
US20060010182A1 (en) * 2004-07-06 2006-01-12 Altepeter Joseph B Quantum random number generator
US7849121B2 (en) * 2006-04-20 2010-12-07 Hewlett-Packard Development Company, L.P. Optical-based, self-authenticating quantum random number generators
CN202133996U (en) * 2011-01-28 2012-02-01 中国科学院西安光学精密机械研究所 True random number generation device
CN102176199B (en) * 2011-01-28 2013-06-19 中国科学院西安光学精密机械研究所 Truth random number producing method and device
US9304741B2 (en) * 2013-04-22 2016-04-05 Omnivision Technologies, Inc. Apparatus, method and system for random number generation
US9658831B2 (en) * 2014-03-11 2017-05-23 Sony Corporation Optical random number generator and method for generating a random number
US10146508B2 (en) * 2014-07-30 2018-12-04 Trentino Sviluppo S.P.A. True random number generator

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2002091147A1 (en) * 2001-05-09 2002-11-14 Magiq Technologies, Inc. Efficient use of detectors for random number generation
GB2457328A (en) * 2008-02-05 2009-08-12 Toshiba Res Europ Ltd Random number generation using photon detection events

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
NIE YOU-QI ET AL: "Practical and fast quantum random number generation based on photon arrival time relative to external reference", APPLIED PHYSICS LETTERS, AMERICAN INSTITUTE OF PHYSICS, US, vol. 104, no. 5, 3 February 2014 (2014-02-03), XP012181569, ISSN: 0003-6951, DOI: 10.1063/1.4863224 *

Cited By (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US10537201B2 (en) 2015-06-16 2020-01-21 Societe Des Produits Nestle S.A. Beverage production system using capsules
IT201600106164A1 (en) * 2016-10-21 2018-04-21 Trentino Sviluppo Spa GENERATOR OF RANKED NUMBERS OF A PERFECT TYPE, IN PARTICULAR GENERATOR OF REALIZED NUMBERS OF A PERFECT TYPE
WO2018073802A1 (en) * 2016-10-21 2018-04-26 Trentino Sviluppo Spa Improved random number generator, in particular improved true random number generator
CN109804348A (en) * 2016-10-21 2019-05-24 特伦蒂诺发展公司 Improved randomizer, especially improved real random number generator
US11080022B2 (en) 2016-10-21 2021-08-03 Trentino Sviluppo Spa Random number generator, in particular improved true random number generator
CN109804348B (en) * 2016-10-21 2023-07-25 特伦蒂诺发展公司 Improved random number generator, in particular improved true random number generator
CN106980490A (en) * 2017-05-10 2017-07-25 李昀芊 A kind of real random number generator based on fluid molecule Brownian movement
CN106980490B (en) * 2017-05-10 2022-11-04 李昀芊 True random number generator based on brownian motion of liquid molecules

Also Published As

Publication number Publication date
CN106687916A (en) 2017-05-17
KR20170024105A (en) 2017-03-06
CN106687916B (en) 2019-06-25
US20170249125A1 (en) 2017-08-31
US10146508B2 (en) 2018-12-04
EP3175354B1 (en) 2018-10-03
KR101975125B1 (en) 2019-05-03
ES2703983T3 (en) 2019-03-13
EP3175354A1 (en) 2017-06-07

Similar Documents

Publication Publication Date Title
US10146508B2 (en) True random number generator
US11080022B2 (en) Random number generator, in particular improved true random number generator
Wayne et al. Photon arrival time quantum random number generation
US11106433B2 (en) Random number generator
EP3729258A1 (en) Amplifying, generating, or certifying randomness
Durt et al. Fast quantum-optical random-number generators
Stucki et al. Towards a high-speed quantum random number generator
US20230244451A1 (en) Systems and Methods for Multi-Source True Random Number Generators, Including Multi-Source Entropy Extractor Based Quantum Photonic True Random Number Generators
Balygin et al. A quantum random number generator based on the 100-Mbit/s Poisson photocount statistics
Tomasi et al. Model, validation, and characterization of a robust quantum random number generator based on photon arrival time comparison
Balygin et al. Implementation of a quantum random number generator based on the optimal clustering of photocounts
WO2019025516A1 (en) Device for detecting lce attack and taking counter-measures
IT202100009356A1 (en) RANDOM NUMBER GENERATOR (RNG), IN PARTICULAR TRUE RANDOM NUMBER GENERATOR (TRNG) OF AN IMPROVED TYPE
Hughes et al. Strengthening the security foundation of cryptography with Whitewood’s quantum-powered entropy engine
Stipčević et al. Scalable quantum random number generator for cryptography based on the random flip-flop approach
Gamil et al. Muon-Ra: Quantum random number generation from cosmic rays
Banerjee et al. Experimental demonstration of high-entropy time of arrival based optical QRNG qualifying stringent statistical tests
HRP20040382A2 (en) Quantum random bit generator
KR20230075077A (en) Apparatus for generating multi-bit random number
Ivanova et al. Investigation of quantum random number generation based on space-time division of photons
Zhang et al. Rolling dice at the nanoscale
IT201800009281A1 (en) USE OF A SEMICONDUCTOR DEVICE FOR THE GENERATION OF RANDOM NUMBERS
Sajal et al. True Random Number Generation Using Dark Noise Modulation of a Single-Photon Avalanche Diode
Marangon et al. High speed optical quantum random number generation
Hussain et al. BIST for Online Evaluation of PUFs and TRNGs

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 15734727

Country of ref document: EP

Kind code of ref document: A1

WWE Wipo information: entry into national phase

Ref document number: 15329961

Country of ref document: US

NENP Non-entry into the national phase

Ref country code: DE

REEP Request for entry into the european phase

Ref document number: 2015734727

Country of ref document: EP

WWE Wipo information: entry into national phase

Ref document number: 2015734727

Country of ref document: EP

ENP Entry into the national phase

Ref document number: 20177002962

Country of ref document: KR

Kind code of ref document: A