Re: Is this protocol okay?

From: Alexis Machado (alexis@brfree.com.br)
Date: 02/12/03


From: "Alexis Machado" <alexis@brfree.com.br>
Date: Tue, 11 Feb 2003 23:50:19 -0000


"Mads Rasmussen" <mads@opencs.com.br> wrote in message news:b2bdr0$m89$1@newsreader.mailgate.org...
> given the scheme proposed by Alexis we have
>
> c1 = Ek(m xor IV)
> c2 = Ek(m xor c1)
> c3 = Ek(m xor c2)
> c4 = Ek(IV xor c3)
>
> c2 can be changed (by error in transmission or deliberately) and the scheme
> will not detect it.

Oops. Each plaintext block depends on two ciphertext
blocks only ...

Obrigado Mads.
Thanks David.

---
Alexis


Relevant Pages

  • Re: Pelican MAC -> HASH
    ... How embarrasing. ... For each plaintext block, xor plaintext p with the state s, ... Now we cannot find collisions in trivial manner: ...
    (sci.crypt)
  • Re: Pelican MAC -> HASH
    ... >For each plaintext block, xor plaintext p with the state s, ... an ideal hash). ...
    (sci.crypt)

Quantcast