RSA Laboratories

RSA Algorithm

RSA-based Cryptographic Schemes

The RSA algorithm was invented by Ronald L. Rivest, Adi Shamir, and Leonard Adleman in 1977. This page has a collection of links to RSA-related documents on this web site. There are a variety of different cryptographic schemes and protocols based on the RSA algorithm in products all over the world; RSA Laboratories recommends the RSAES-OAEP encryption scheme and the RSASSA-PSS signature scheme with appendix for new applications.

RSAES-OAEP (RSA Encryption Scheme - Optimal Asymmetric Encryption Padding) is a public-key encryption scheme combining the RSA algorithm with the OAEP method. The inventors of OAEP are Mihir Bellare and Phillip Rogaway, with enhancements by Don B. Johnson and Stephen M. Matyas.

RSASSA-PSS (RSA Signature Scheme with Appendix - Probabilistic Signature Scheme) is an asymmetric signature scheme with appendix combining the RSA algorithm with the PSS encoding method. The inventors of the PSS encoding method are Mihir Bellare and Phillip Rogaway. During efforts to adopt RSASSA-PSS into the P1363a standards effort, certain adaptations to the original version of RSA-PSS were made by Bellare and Rogaway and also by Burt Kaliski (the editor of IEEE P1363a) to facilitate implementation and integration into existing protocols.

Recent Results on OAEP Security
This document outlines the security of the OAEP encoding method and the RSAES-OAEP encryption scheme. To summarize, RSAES-OAEP is secure against what is termed adaptive chosen ciphertext attacks. However, OAEP combined with other public-key algorithms dif

RSAES-OAEP Dictionary
In this dictionary, we give brief descriptions of words and phrases related to the RSAES-OAEP encryption scheme (as well as public-key encryption schemes in general).