Wegman-Carter Style MACs from TBCs
Jooyoung Lee
School of Computing(GSIS), KAIST
Jooyoung Lee Wegman-Carter Style MACs from TBCs
Wegman-Carter Style MACs from TBCs Jooyoung Lee School of - - PowerPoint PPT Presentation
Wegman-Carter Style MACs from TBCs Jooyoung Lee School of Computing(GSIS), KAIST Jooyoung Lee Wegman-Carter Style MACs from TBCs Message Authentication Codes http://en.wikipedia.org/wiki/File:MAC.svg Block cipher-based: CMAC, OMAC etc.
School of Computing(GSIS), KAIST
Jooyoung Lee Wegman-Carter Style MACs from TBCs
http://en.wikipedia.org/wiki/File:MAC.svg
Jooyoung Lee Wegman-Carter Style MACs from TBCs
Jooyoung Lee Wegman-Carter Style MACs from TBCs
?
Jooyoung Lee Wegman-Carter Style MACs from TBCs
2n, and a key K ∈ F2n,
Jooyoung Lee Wegman-Carter Style MACs from TBCs
2n + ε)qv where
Jooyoung Lee Wegman-Carter Style MACs from TBCs
2n +ε)qv + (qm+qv)2 2n
Jooyoung Lee Wegman-Carter Style MACs from TBCs
1
n 2 .
2
n 2 .
3
n 2 tags.
Jooyoung Lee Wegman-Carter Style MACs from TBCs
Jooyoung Lee Wegman-Carter Style MACs from TBCs
Jooyoung Lee Wegman-Carter Style MACs from TBCs
Jooyoung Lee Wegman-Carter Style MACs from TBCs
n 2 forward queries
n 2 forward and backward
Jooyoung Lee Wegman-Carter Style MACs from TBCs
c
c
c
c
Jooyoung Lee Wegman-Carter Style MACs from TBCs
1
2
1 2τ for any verification query (M, T).
3
Jooyoung Lee Wegman-Carter Style MACs from TBCs
2n 3 queries (ignoring the truncation)
Jooyoung Lee Wegman-Carter Style MACs from TBCs
Jooyoung Lee Wegman-Carter Style MACs from TBCs
T K(X) = ET⊕Y(X ⊕ K) ⊕ K for Y = EK(0)
K,L(X) = ˜
K (X ⊕ W) ⊕ W where HL(T) = W||V
h(T) for L = Kh||K ′
h
Jooyoung Lee Wegman-Carter Style MACs from TBCs
K(X) = EHK′
h (T)⊕K ′(X ⊕ K ⊕ HKh(T)) ⊕ K ⊕ HKh(T).
K(X) = EHK′
h (M)⊕K ′(K ⊕ HKh(M)) ⊕ K ⊕ HKh(T).
h, K, K ′) as a key
Jooyoung Lee Wegman-Carter Style MACs from TBCs
Jooyoung Lee Wegman-Carter Style MACs from TBCs