AES-GCM-SIV: Nonce Misuse-Resistant Authenticated Encryption
draft-irtf-cfrg-gcmsiv-08

The information below is for an old version of the document
Document Type Expired Internet-Draft (cfrg RG)
Last updated 2018-08-14 (latest revision 2018-02-10)
Replaces draft-gueron-gcmsiv
Stream IRTF
Intended RFC status Informational
Formats
Expired & archived
plain text pdf html bibtex
IETF conflict review conflict-review-irtf-cfrg-gcmsiv
Additional URLs
- Mailing list discussion
Stream IRTF state Waiting for Document Shepherd
Consensus Boilerplate Yes
Document shepherd No shepherd assigned
IESG IESG state Expired
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at
https://www.ietf.org/archive/id/draft-irtf-cfrg-gcmsiv-08.txt

Abstract

This memo specifies two authenticated encryption algorithms that are nonce misuse-resistant - that is that they do not fail catastrophically if a nonce is repeated.

Authors

Shay Gueron (shay@math.haifa.ac.il)
Adam Langley (agl@google.com)
Yehuda Lindell (yehuda.lindell@biu.ac.il)

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)