Re: AES MAC security question

From: Joseph Ashwood (ashwood_at_msn.com)
Date: 07/07/05


Date: Thu, 07 Jul 2005 00:51:00 GMT


"Rein Anders Apeland" <apeland@mivu.no> wrote in message
news:1120497172.5120.85.camel@localhost.localdomain...
> On Mon, 2005-07-04 at 00:00 +0000, Andrew Swallow wrote:
> Maybe I am missing something here, but why do I need an IV if
> the packet is smaller than the AES block size? Can't I just
> encrypt it with the shared key? The receiver just decrypts whatever
> packet it gets, and _then_ it can have a look at IDs and counters.

The IVs purpose is to avoid having information leaked due to repeated
sending. In your case there is actually no need for an external one, you
actually have an internal IV in the form of the usage counter. It's a usage
form that has not been significantly studied so may have flaws, but none are
immediately apparent because of the additional restrictions around the
usage.
                    Joe



Relevant Pages

  • Re: Help needed with clue from CROSSWORD
    ... Your unwillingness to recognise the usage isn't a particularly strong ... Usage is missing a great deal.) ... "the group agree" is both current and allows the distinction of nuances that I illustrated. ... The ability to make the distinction is likely to reduce ambiguity rather than perpetrate it. ...
    (rec.puzzles.crosswords)
  • Re: It beggars belief.
    ... whatever laws they want to. ... Stop me if I'm missing the point here, but when you boil it down to the ... the headline is rather more sensational than the contents. ... Those where the usage looks likely to have been fraudulent *are* being ...
    (uk.legal)
  • Re: someone goes missing
    ... discovered to be missing recently. ... I'm very much a descriptivist when it comes to grammar - I think ... missing" - then it's correct usage. ...
    (rec.arts.mystery)
  • Re: Using match variables ($1, $2 ...) as variables.
    ... >>Could you elaborate on this point? ... You are missing the point. ... Ilya just wanted to know how the usage of $ ...
    (comp.lang.perl.misc)
  • Re: bad usage of the shutdown system call produce a packet with null ip addresses
    ... bad usage of the shutdown system call produce a packet with null ip addresses ... forward me the PR receipt from GNATS? ...
    (freebsd-net)

Quantcast