[40546] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: IGE mode in OpenSSL

daemon@ATHENA.MIT.EDU (Travis H.)
Mon Sep 4 18:54:01 2006

X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
Date: Mon, 4 Sep 2006 16:28:51 -0500
From: "Travis H." <solinym@gmail.com>
To: "Ben Laurie" <ben@algroup.co.uk>
Cc: Cryptography <cryptography@metzdowd.com>
In-Reply-To: <d4f1333a0609041409x3a40ec80r9a848fd32222336a@mail.gmail.com>

Nevermind the algorithm, I saw the second PDF.

For the other readers, the algorithm in more
standard variable names is:

c_i = f_K(p_i xor c_(i-1)) xor p_(i-1)

IV = <p_(-1), c_(-1)>

I suppose the dependency on c_(i-1) and p_(i-1) is the part that
prevents the attacker from predicting and controlling the garble.
-- 
"If you're not part of the solution, you're part of the precipitate."
Unix "guru" for rent or hire -><- http://www.lightconsulting.com/~travis/
GPG fingerprint: 9D3F 395A DAC5 5CCC 9066  151D 0A6B 4098 0C55 1484

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post