[145344] in cryptography@c2.net mail archive
Re: Encryption and authentication modes
daemon@ATHENA.MIT.EDU (markus reichelt)
Thu Jul 15 13:35:17 2010
Date: Thu, 15 Jul 2010 17:32:04 +0200
From: markus reichelt <ml@mareichelt.com>
To: Cryptography List <cryptography@metzdowd.com>
Mail-Followup-To: Cryptography List <cryptography@metzdowd.com>
In-Reply-To: <26C62A0E-A72F-4BA0-9D5C-FA9B1ED7E564@mac.com>
--cmJC7u66zC7hs+87
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable
* james hughes <hughejp@mac.com> wrote:
> If there is no room for or an integrity field, you can look at
> XTS-AES.
> http://csrc.nist.gov/publications/nistpubs/800-38E/nist-sp-800-38E.pdf
A not so well-known statement of said PDF certainly is the following,
especially in light of today's storage device capacities:
"The length of the data unit for any instance of an implementation of
XTS-AES shall not exceed 2^20 AES blocks."
It seems to have made it smartly into openbsd, at least this
commit-info hints it:
http://marc.info/?l=3Dopenbsd-cvs&m=3D121341266715025
--=20
left blank, right bald
--cmJC7u66zC7hs+87
Content-Type: application/pgp-signature
Content-Disposition: inline
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)
iQIcBAEBAgAGBQJMPyn0AAoJEMImmhyPL9kTm3YQAIHdf+mmnhbg8QZ1Qht9lgw3
7PrnGaPGCZYcZvNBrMwvtFxbNJucioTvOx4tKHptxBCCxrcPd6SPv1GVeBDq7s6a
iaYB03QlLyaYJp2wZdI9Waa7PDTIdED++N4IozL9n6KmYOSsYsS9Nk0B563Tj4BV
cQxljvLHj9AxBlD2B0pCj8oP92jHRhkfWe8D+6K3hAIPo4HkN5FiHN1LEpPdR/vi
6fE+BWJGf0XHfghHeOS+7o6GkodMfStrpchqEvL/j18zW6GNWmK0BjCyrAa36TVL
aASmtFS/EL5TmD401yJMLl3ca18ygB4amNK7qvky/5pFSsanuZVBmlO9IiVS4+JK
1KhJ176bUqiyNVQiB6lHFnBhdLQeM+kNTxY963pk+qxK6KgPfc/OijbMZ7EQWzPt
+Xv9xErw9lnYYi5r60ItbIWfrHY9RUWNOTFKQXfNT7clkvEmf20L9QoEdfCZFXUO
peEBTAl4LnrgqV4ImjVVaXHC61jOchMUJV+aPavxihK5iKp7tcCcwQIhQBDBrZp0
oJzM3FYDNEf/rhmcGJON2IlyYeyCVVLcmHKihFissyeVt2ZlzjX4eHvH2pVHMc4o
AGR/bktgg/f3FTb7EjseFnv1GgPZex8bgBWHGYWiDXCDEIL/D7yTa+fLXVe3ZWx8
z+ApOJUm9WmuRIBTlOf1
=WNFV
-----END PGP SIGNATURE-----
--cmJC7u66zC7hs+87--
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com