[Cryptech Tech] [Cryptech-Commits] [user/sra/aes-keywrap] 01/01: Initial commit of AES Key Wrap implementation.

Joachim Strömbergson joachim at secworks.se
Wed May 13 13:48:41 UTC 2015


Aloha!

Simon Josefsson wrote:
> I suggest looking at SIV. It provides key wrapping, and it is (in
> contrast to the RFC 3394 construct) a proper AEAD mode.  It is specified
> by well-known crypto people, Phillip Rogaway and Thomas Shrimpton, in a
> paper with security proofs and was presented at an academic conference.
> 
> https://tools.ietf.org/html/rfc5297
> http://web.cecs.pdx.edu/~teshrim/keywrap.pdf

SIV was one of the schemes suggested.

BTW: Loved appendix F of the keywrap analysis paper. See image.

-- 
Med vänlig hälsning, Yours

Joachim Strömbergson - Alltid i harmonisk svängning.
========================================================================
 Joachim Strömbergson          Secworks AB          joachim at secworks.se
========================================================================
-------------- next part --------------
A non-text attachment was scrubbed...
Name: Screen Shot 2015-05-13 at 15.39.58.png
Type: image/png
Size: 121961 bytes
Desc: not available
URL: <https://lists.cryptech.is/archives/tech/attachments/20150513/a45d0a69/attachment-0001.png>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 931 bytes
Desc: OpenPGP digital signature
URL: <https://lists.cryptech.is/archives/tech/attachments/20150513/a45d0a69/attachment-0001.sig>


More information about the Tech mailing list