In NMR NORX, why doesn’t AEADEnc return (C, T, T’) so that AEADDec would require a single pass?
-
-
T’ is the tag computed in AEADDec which is then compared to the received tag T which was computed in AEADEnc. Not 100% sure what you mean?
-
Add a second finalization step to Enc, return that new tag in addition to T so that Dec doesn’t have to recompute it (as in non MR)
- 8 more replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.