See this document in CiteSeerX!

OCB: A Block-Cipher Mode of Operation for  (Make Corrections)  
Efficient Authenticated Encryption PHILLIP ROGAWAY University of California...



  Home/Search   Context   Related

 
View or download:
ucdavis.edu/~rogaway/pape...ocbfull.ps
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  ucdavis.edu/~rogaway/papers/ (more)
(Enter author homepages)

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: accounting. OCB uses + 2 block-cipher calls to encrypt a nonempty message M . (The empty string takes three block-cipher calls.) We compare this with CBC encryption and CBC encryption plus a CBC MAC. Namely, "basic" CBC encryption, where one assumes a random IV and a message which is a multiple of the block length, uses |M |/n block-cipher calls. (A more fair comparison uses some padding regime and sets IV = EK # (N ), so both schemes use a nonce IV). If one combines basic CBC encryption... (Update)

Similar documents (at the sentence level):
25.1%:   OCB: A Block-Cipher Mode of Operation for Efficient.. - Rogaway, Bellare.. (2001)   (Correct)
11.4%:   Proposal to NIST for a block-cipher mode of operation which.. - Rogaway (2001)   (Correct)
11.0%:   OCB Mode - Rogaway (2001)   (Correct)

Active bibliography (related documents):   More   All
0.0:   The order of encryption and authentication for protecting.. - Krawczyk (2001)   (Correct)
0.0:   Deterministic Authenticated-Encryption - Provable-Security Treatment Of (2006)   (Correct)
0.0:   A Password-Based Authenticator: Security Proof and.. - Hitchcock, Tin..   (Correct)

Similar documents based on text:
0.0:   Unknown -   (Correct)

BibTeX entry:   (Update)

@misc{ encryption-ocb,
  author = "Efficient Authenticated Encryption",
  title = "OCB: A Block-Cipher Mode of Operation for",
  url = "citeseer.ist.psu.edu/765766.html" }
Citations (may not include all citations):
260   Relations among notions of security for public-key encryptio.. (context) - Bellare, Desai et al. - 1998
159   A concrete security treatment of symmetric encryption: Analy.. (context) - Bellare, Desai et al. - 1997
84   XOR MACs: New methods for message authentication using finit.. (context) - Bellare, Gu et al. - 2003
28   Fast Implementations of AES Candidates - Aoki, Lipmaa - 2000
18   Does encryption with redundancy provide authenticity (context) - An, Bellare - 2045

Documents on the same site (http://www.cs.ucdavis.edu/~rogaway/papers/):   More
On the Construction of Variable-Input-Length Ciphers - Bellare, Rogaway (1999)   (Correct)
Authenticated Key Exchange Secure Against Dictionary Attacks - Bellare, Pointcheval.. (2000)   (Correct)
Reconciling Two Views of Cryptography (The Computational.. - Abadi, Rogaway (2000)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC