Measurements of stream ciphers on one machine: amd64; Kaby Lake (906e9); 2017 Intel Xeon E3-1220 v6; 4 x 3000MHz; kizomba, supercop-20241022
[Page version: 20241109 15:41:18]
eBASC
(ECRYPT Benchmarking
of Stream Ciphers)
is a project
to measure the performance of stream ciphers.
This page presents benchmark results collected in eBASC:
- Speed (cycles/byte) of encrypting an 8-byte message.
- Speed of encrypting a 64-byte message.
- Speed of encrypting a 576-byte message.
- Speed of encrypting a 1536-byte message.
- Speed of encrypting a 4096-byte message.
- Speed of encrypting a long message.
This is computed as 1/3072 of the difference in cycle counts
between encrypting 4096-byte messages and encrypting 1024-byte messages.
Graphs show timings for all message lengths between 0 and 4096 bytes.
The stair-step shape of a typical curve on the graphs
reflects the fact that these stream ciphers handle messages in blocks,
such as 64-byte blocks.
Each table row lists
the first quartile of many speed measurements,
the median of many speed measurements,
the third quartile of many speed measurements, and
the name of the primitive.
Measurements with large variance are indicated in red with question marks.
The symbol
T:
(starting with supercop-20200816)
means that the SUPERCOP database
at the time of benchmarking did not list constant time
as a goal for this implementation.
The symbol
T!!!
means that constant time was listed as a goal for this implementation,
but that the implementation failed TIMECOP.
(TIMECOP failures are not necessarily security issues;
they can sometimes be resolved by, e.g., declaring that a rejection-sampling condition is safe to declassify.)
There is a
separate page
with more information about each stream cipher and each implementation.
Designers and implementors
interested in submitting new stream ciphers and new implementations
should read the call for submissions.
Test results
Graphs:
old
(bytes,cycles)
Cycles/byte for long messages |
25% | 50% | 75% | stream |
0.53 | 0.53 | 0.54 | chacha8 |
0.59 | 0.60 | 0.61 | salsa208 |
0.63 | 0.63 | 0.64 | T:aes128ctr |
0.70 | 0.72 | 0.74 | tango642 |
0.52? | 0.77? | 1.69? | chacha12 |
0.76 | 0.78 | 0.80 | T:aes192ctr |
0.84 | 0.84 | 0.85 | salsa2012 |
0.88 | 0.88 | 0.89 | aes256ctr |
1.00 | 1.00 | 1.01 | T:speck6496ctr |
1.03 | 1.04 | 1.05 | T:speck64128ctr |
1.15 | 1.16 | 1.17 | chacha20 |
1.23 | 1.23 | 1.24 | T:speck128128ctr |
1.25 | 1.26 | 1.27 | T:speck128192ctr |
1.29 | 1.29 | 1.29 | T:speck128256ctr |
1.32 | 1.33 | 1.34 | salsa20 |
1.33 | 1.34 | 1.35 | xsalsa20 |
1.44 | 1.44 | 1.47 | T:simon6496ctr |
1.49 | 1.49 | 1.50 | T:simon64128ctr |
1.51 | 1.53 | 1.56 | T:hc128 |
1.80 | 1.82 | 1.83 | T:sosemanuk |
1.92 | 1.93 | 1.93 | T:trivium |
1.99 | 2.07 | 2.12 | T:tpy |
2.21 | 2.22 | 2.23 | T:simon128128ctr |
2.23 | 2.33 | 2.40 | T:tpy6 |
2.29 | 2.35 | 2.38 | T:hc256 |
2.35 | 2.36 | 2.37 | T:simon128256ctr |
2.54 | 2.55 | 2.56 | T:cryptmtv3 |
2.57 | 2.58 | 2.60 | T:nlsv2 |
2.70 | 2.71 | 2.71 | T:rabbit |
2.77 | 2.80 | 2.82 | T:snow20 |
2.88 | 2.90 | 2.92 | T:panama |
3.28 | 3.35 | 3.43 | T:tpypy |
4.09 | 4.11 | 4.13 | T:lexv2 |
8.32 | 8.34 | 8.37 | T:aes128estream |
13.13 | 13.15 | 13.17 | T:aes256estream |
17.29 | 17.37 | 17.43 | T:ocelot1 |
18.27 | 18.33 | 18.40 | T:ocelot2 |
29.65 | 30.05 | 30.25 | T:amastrid |
|
Cycles/byte for 4096 bytes |
25% | 50% | 75% | stream |
0.54 | 0.54 | 0.55 | chacha8 |
0.61 | 0.61 | 0.61 | salsa208 |
0.67 | 0.67 | 0.67 | T:aes128ctr |
0.77? | 0.79? | 1.47? | chacha12 |
0.85 | 0.85 | 0.86 | salsa2012 |
0.86 | 0.87 | 0.87 | tango642 |
0.93 | 0.93 | 0.93 | aes256ctr |
1.03 | 1.03 | 1.03 | T:speck6496ctr |
1.07 | 1.07 | 1.07 | T:speck64128ctr |
1.11 | 1.11 | 1.12 | T:aes192ctr |
1.17 | 1.17 | 1.18 | chacha20 |
1.27 | 1.27 | 1.28 | T:speck128128ctr |
1.30 | 1.30 | 1.31 | T:speck128192ctr |
1.33 | 1.33 | 1.33 | T:speck128256ctr |
1.34 | 1.35 | 1.35 | salsa20 |
1.44 | 1.45 | 1.45 | xsalsa20 |
1.64 | 1.64 | 1.66 | T:simon6496ctr |
1.82 | 1.82 | 1.82 | T:simon64128ctr |
2.02 | 2.02 | 2.02 | T:trivium |
2.29 | 2.29 | 2.30 | T:sosemanuk |
2.51 | 2.51 | 2.52 | T:simon128128ctr |
2.69 | 2.70 | 2.71 | T:nlsv2 |
2.79 | 2.79 | 2.80 | T:rabbit |
2.79 | 2.80 | 2.80 | T:simon128256ctr |
2.88 | 2.89 | 2.90 | T:snow20 |
2.89 | 2.95 | 3.00 | T:tpy6 |
3.02 | 3.03 | 3.03 | T:cryptmtv3 |
3.37 | 3.41 | 3.43 | T:tpy |
3.82 | 3.83 | 3.84 | T:panama |
4.23 | 4.24 | 4.25 | T:lexv2 |
4.45 | 4.46 | 4.47 | T:hc128 |
4.69 | 4.72 | 4.75 | T:tpypy |
8.40 | 8.40 | 8.42 | T:aes128estream |
9.96 | 9.99 | 9.99 | T:hc256 |
13.22 | 13.22 | 13.24 | T:aes256estream |
18.37 | 18.41 | 18.44 | T:ocelot1 |
19.35 | 19.38 | 19.40 | T:ocelot2 |
31.34 | 31.60 | 31.71 | T:amastrid |
|
Cycles/byte for 1536 bytes |
25% | 50% | 75% | stream |
0.56 | 0.56 | 0.57 | chacha8 |
0.62 | 0.63 | 0.63 | salsa208 |
0.73 | 0.73 | 0.73 | T:aes128ctr |
0.79? | 0.81? | 1.49? | chacha12 |
0.87 | 0.87 | 0.88 | salsa2012 |
1.01 | 1.01 | 1.01 | aes256ctr |
1.08 | 1.08 | 1.09 | T:speck6496ctr |
1.10 | 1.12 | 1.14 | tango642 |
1.12 | 1.12 | 1.13 | T:speck64128ctr |
1.18 | 1.19 | 1.20 | chacha20 |
1.33 | 1.33 | 1.34 | T:speck128128ctr |
1.35 | 1.36 | 1.37 | T:speck128192ctr |
1.35 | 1.36 | 1.37 | salsa20 |
1.39 | 1.39 | 1.40 | T:speck128256ctr |
1.61 | 1.62 | 1.63 | xsalsa20 |
1.66 | 1.68 | 1.71 | T:aes192ctr |
1.95 | 1.96 | 1.97 | T:simon6496ctr |
2.17 | 2.18 | 2.18 | T:trivium |
2.35 | 2.35 | 2.36 | T:simon64128ctr |
2.93 | 2.94 | 2.95 | T:rabbit |
2.94 | 2.95 | 2.97 | T:nlsv2 |
2.97 | 2.99 | 3.00 | T:simon128128ctr |
3.02 | 3.03 | 3.05 | T:snow20 |
3.13 | 3.14 | 3.15 | T:sosemanuk |
3.52 | 3.52 | 3.53 | T:simon128256ctr |
3.84 | 3.88 | 3.93 | T:tpy6 |
4.38 | 4.38 | 4.39 | T:cryptmtv3 |
4.46 | 4.48 | 4.48 | T:lexv2 |
5.38 | 5.39 | 5.42 | T:panama |
5.58 | 5.62 | 5.69 | T:tpy |
6.89 | 7.09 | 7.15 | T:tpypy |
8.48 | 8.50 | 8.51 | T:aes128estream |
9.31 | 9.34 | 9.37 | T:hc128 |
13.35 | 13.37 | 13.39 | T:aes256estream |
20.08 | 20.16 | 20.21 | T:ocelot1 |
21.10 | 21.14 | 21.21 | T:ocelot2 |
22.66 | 22.71 | 22.74 | T:hc256 |
33.24 | 34.08 | 34.27 | T:amastrid |
|
Cycles/byte for 576 bytes |
25% | 50% | 75% | stream |
0.74 | 0.75 | 0.76 | chacha8 |
0.87 | 0.88 | 0.89 | salsa208 |
0.96 | 0.96 | 0.97 | T:aes128ctr |
1.06? | 1.12? | 1.69? | chacha12 |
1.19 | 1.20 | 1.22 | salsa2012 |
1.26 | 1.27 | 1.27 | T:speck6496ctr |
1.30 | 1.31 | 1.32 | T:speck64128ctr |
1.31 | 1.32 | 1.33 | aes256ctr |
1.55 | 1.56 | 1.58 | T:speck128128ctr |
1.59 | 1.60 | 1.61 | T:speck128192ctr |
1.61 | 1.61 | 1.62 | chacha20 |
1.64 | 1.65 | 1.66 | T:speck128256ctr |
1.75 | 1.77 | 1.84 | tango642 |
1.87 | 1.88 | 1.90 | salsa20 |
2.56 | 2.57 | 2.58 | T:trivium |
2.57 | 2.59 | 2.60 | xsalsa20 |
3.08 | 3.13 | 3.18 | T:aes192ctr |
3.26 | 3.27 | 3.29 | T:simon64128ctr |
3.32 | 3.34 | 3.36 | T:rabbit |
3.42 | 3.44 | 3.48 | T:snow20 |
3.44 | 3.46 | 3.47 | T:simon6496ctr |
3.60 | 3.61 | 3.63 | T:nlsv2 |
4.74 | 4.74 | 4.76 | T:cryptmtv3 |
4.77 | 4.79 | 4.82 | T:simon128128ctr |
5.00 | 5.03 | 5.06 | T:lexv2 |
5.16 | 5.16 | 5.18 | T:simon128256ctr |
5.39 | 5.40 | 5.43 | T:sosemanuk |
6.40 | 6.44 | 6.60 | T:tpy6 |
8.74 | 8.77 | 8.80 | T:aes128estream |
9.48 | 9.53 | 9.68 | T:panama |
11.57 | 11.62 | 11.68 | T:tpy |
12.86 | 12.94 | 13.27 | T:tpypy |
13.68 | 13.73 | 13.76 | T:aes256estream |
22.23 | 22.29 | 22.36 | T:hc128 |
24.82 | 24.95 | 25.19 | T:ocelot1 |
25.59 | 25.71 | 25.82 | T:ocelot2 |
39.81 | 40.25 | 40.80 | T:amastrid |
56.51 | 56.63 | 56.72 | T:hc256 |
|
Cycles/byte for 64 bytes |
25% | 50% | 75% | stream |
2.75 | 2.77 | 2.84 | chacha8 |
3.03 | 3.09 | 3.14 | T:speck6496ctr |
3.16 | 3.22 | 3.31 | T:speck64128ctr |
3.28 | 3.31 | 3.34 | salsa208 |
3.59 | 3.66 | 3.72 | T:aes128ctr |
3.69 | 3.75 | 3.78 | chacha12 |
3.72 | 3.77 | 3.84 | T:speck128128ctr |
4.06 | 4.12 | 4.20 | T:speck128192ctr |
4.20 | 4.25 | 4.38 | T:speck128256ctr |
4.31 | 4.34 | 4.38 | salsa2012 |
4.81 | 4.84 | 4.92 | aes256ctr |
5.45 | 5.52 | 5.58 | chacha20 |
6.42 | 6.47 | 6.50 | salsa20 |
7.50 | 7.56 | 7.66 | T:simon6496ctr |
7.66 | 7.69 | 7.75 | T:trivium |
7.69 | 7.75 | 7.81 | T:rabbit |
8.47 | 8.66 | 8.92 | T:snow20 |
8.78 | 8.83 | 8.94 | T:simon64128ctr |
10.08 | 10.14 | 10.30 | T:cryptmtv3 |
10.27 | 10.41 | 10.98 | tango642 |
11.50 | 11.62 | 11.66 | T:simon128128ctr |
12.11 | 12.19 | 12.30 | T:aes128estream |
12.16 | 12.22 | 12.47 | T:lexv2 |
12.69 | 12.83 | 13.00 | xsalsa20 |
13.14 | 13.19 | 13.45 | T:simon128256ctr |
13.80 | 13.92 | 14.17 | T:nlsv2 |
18.02 | 18.09 | 18.30 | T:aes256estream |
21.89 | 22.20 | 22.45 | T:aes192ctr |
30.75 | 30.88 | 31.16 | T:sosemanuk |
39.47 | 39.84 | 40.23 | T:tpy6 |
61.52 | 61.70 | 62.20 | T:panama |
82.91 | 83.80 | 84.73 | T:ocelot1 |
83.02 | 85.03 | 86.94 | T:ocelot2 |
87.89 | 88.70 | 89.25 | T:tpy |
89.36 | 90.62 | 91.89 | T:tpypy |
116.16 | 117.12 | 118.06 | T:amastrid |
186.45 | 186.72 | 187.00 | T:hc128 |
489.95 | 490.92 | 492.86 | T:hc256 |
|
Cycles/byte for 8 bytes |
25% | 50% | 75% | stream |
16.12 | 16.38 | 16.88 | T:speck6496ctr |
16.62 | 17.12 | 17.88 | T:speck64128ctr |
19.88 | 20.50 | 21.12 | T:speck128128ctr |
21.38 | 21.88 | 22.88 | T:speck128256ctr |
21.88? | 23.75? | 25.50? | T:speck128192ctr |
28.25 | 28.75 | 29.25 | salsa208 |
30.25 | 30.50 | 30.75 | T:aes128ctr |
34.25 | 34.88 | 35.25 | chacha8 |
40.12 | 40.50 | 40.75 | aes256ctr |
40.38 | 40.75 | 41.50 | chacha12 |
45.38 | 46.38 | 46.88 | T:simon6496ctr |
46.12 | 46.88 | 48.12 | T:rabbit |
48.12 | 48.38 | 48.88 | T:trivium |
50.12 | 50.38 | 50.88 | salsa2012 |
54.50 | 55.00 | 55.62 | T:simon64128ctr |
55.25 | 55.62 | 56.00 | T:aes128estream |
60.25 | 60.75 | 61.50 | T:cryptmtv3 |
62.12 | 62.50 | 63.00 | chacha20 |
66.62 | 67.00 | 67.50 | T:aes256estream |
66.50 | 68.25 | 69.88 | T:snow20 |
71.75 | 72.12 | 72.62 | T:simon128128ctr |
72.75 | 73.25 | 73.88 | salsa20 |
72.88 | 75.88 | 76.62 | T:lexv2 |
75.25 | 76.88 | 78.12 | T:nlsv2 |
76.88 | 77.88 | 79.00 | tango642 |
83.12 | 84.12 | 85.00 | T:simon128256ctr |
125.00 | 126.75 | 129.00 | xsalsa20 |
177.00 | 178.12 | 180.25 | T:aes192ctr |
245.62 | 246.50 | 247.62 | T:sosemanuk |
302.00 | 303.25 | 306.50 | T:tpy6 |
485.62 | 487.88 | 491.50 | T:panama |
535.25 | 541.25 | 553.00 | T:ocelot2 |
535.62 | 544.88 | 558.88 | T:ocelot1 |
694.62 | 702.62 | 708.38 | T:tpy |
697.75 | 703.38 | 707.25 | T:tpypy |
773.00 | 780.25 | 788.75 | T:amastrid |
1493.00 | 1495.50 | 1499.25 | T:hc128 |
3913.25 | 3931.12 | 3944.00 | T:hc256 |
|
|