# Bent function

Main Article
Talk
Related Articles  [?]
Bibliography  [?]
Citable Version  [?]

This editable Main Article is under development and not meant to be cited; by editing it you can help to improve it towards a future approved, citable version. These unapproved articles are subject to a disclaimer.

A bent function is a boolean function of  variables that has nonlinearity equal to . The Walsh-Hadamard coefficients of a bent function are equal to ; this gives the alternative definition of bent functions. Bent functions have even number of variables, and achieve the bound of maximal possible nonlinearity. The high non-linearity makes them useful in cryptography, in the construction of stream ciphers or block ciphers. Bent functions are a specific case of plateaued functions.

## Main properties

One of the most useful property distinguishing bent functions uses derivatives:

A boolean function  is bent if and only if every derivative  is balanced for .

The minimal degree of bent function is  (the function  is bent), the maximal degree of bent function of  variables is .

The maximal dimension of linear space where a bent function of  variables is constant also equals to . A bent function which do have such linear space is called normal. Most constructions of bent functions give normal bent functions.

## Transformations on bent functions

It has long been known that adding an affine function to a bent function gives another bent function. Harris and Adams [1] show that permuting the input bits or adding affine functions to one or more inputs also give bent output.

## Dual bent function

Signs of Walsh-Hadamard coefficients can be transformed to another boolean function of the same number of variables. This function is also bent and is called dual bent function. The dual function to the dual function is the function itself.

## Bent function constructions

One paper is [2].

## Bent function enumeration

For the number of bent function  very little is know. . Because degree of bent function is bounded by  it is easy to show that . This result can be slightly improved but still remain very far from the truth.

## References

1. Sandy Harris & Carlisle Adams. Key-Dependent S-Box Manipulations. Springer-Verlag.
2. C. Adams and S. Tavares (September, 1990). "Generating and Counting Binary Bent Sequences".