[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
NSA+Huawei
- To: cpunks <[email protected]>
- Subject: NSA+Huawei
- From: [email protected] (nymble)
- Date: Tue, 18 Mar 2014 17:51:30 -0700
- In-reply-to: <CAGRDzQX7owmz+bRCsC9-Fk8gemmd1oWJ=V1sm83hPFMLnVUH2w@mail.gmail.com>
- References: <CAGRDzQXVu4LDFaSKJyUNQESMF7J3M2YL5DDMKgzmghD7zuCw=w@mail.gmail.com> <[email protected]> <CAGRDzQX7owmz+bRCsC9-Fk8gemmd1oWJ=V1sm83hPFMLnVUH2w@mail.gmail.com>
A joint contribution by the NSA and Huawei just removed the AES-SIV mode of operation from IEEE 802.11:
https://mentor.ieee.org/802.11/dcn/14/11-14-0414-00-00ai-resolution-to-open-security-comments-not-related-to-siv.docx
Very strange bedfellows.
AES-SIV was being proposed in the draft for a key wrap application. AES-CCM is now the only alternative â?¦
SIV is increasingly my favorite AEAD mode. It is more efficient over-the wire than CCM or GCM and is 'nonce safeâ??.
Is anyone using or considering ChaCha-SIV? Nonce-safe is a very nice property - particularly for multicast applications.