If Enc adds (S,T’)←finalise(S,08) returns (C,T,T’) , the non-MR Dec algorithm can be used and still verify T’, right?
-
-
Okay so in AEADDec: S<-finalise(K,T,FF); S,C<-decrypt(S,C,02); S,T’’<-finalise(S,08); return T’==T’’; Seems to work but looks strange tbh.
-
I have no idea if there are any security proofs for such a construction. Another question is what happens with the nonce N? …
- 4 more replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.