A Closer Look at HMAC

نویسنده

  • Krzysztof Pietrzak
چکیده

Bellare, Canetti and Krawczyk [BCK96] show that cascading an ε-secure (fixed input length) PRF gives an O(εnq)-secure (variable input length) PRF when making at most q prefix-free queries of length n blocks. We observe that this translates to the same bound for NMAC (which is the cascade without the prefix-free requirement but an additional application of the PRF at the end), and give a matching attack, showing this bound is tight. This contradicts the O(εn) bound claimed by Koblitz and Menezes [KM12]. Definitions. For a keyed function F : {0, 1}c × {0, 1}b → {0, 1}c we denote with cascF : {0, 1}2c×{0, 1}b∗ → {0, 1}c (where {0, 1}b∗ = ⋃ z∈N{0, 1}bz) the cascade (aka. Merkle-Damg̊ard) construction build from F as casc(k,m1‖ . . . ‖mn) = yn where y0 = k and for i ≥ 1 : yi = F(yi−1,mi) nmacF is cascF with an additional application of F at the end (using some padding if b > c). nmac((k1, k2),M) = F(k2, casc (k1,M)) A variable input length function G : {0, 1}2c × {0, 1}b∗ → {0, 1}c is a (ε, t, q, n)-secure PRF (for fixed input length functions we omit the parameter n) if for any adversary A of size t, making q queries, each of length at most n (in b-bit blocks) and R denoting a uniformly random function with the same domain ∣∣∣∣ Pr k←{0,1}c[AG(k,.)]→ 1]− Pr R [AR(.) → 1] ∣∣∣∣ ≤ ε

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

I'm No Longer a Child: A Closer Look at the Interaction Between Iranian EFL University Students' Identities and Their Academic Performance

Although university EFL students represent a wide array of social and cultural identities, their multiple and diverse identities are not usually considered in foreign language classrooms. This qualitative case study attempted to examine identity conflicts experienced by Iranian EFL learners at the university context. To this end, two Shiraz University students' identities were investigated. Sem...

متن کامل

Another look at HMAC

HMAC is the most widely-deployed cryptographic-hash-function-based message authentication code. First, we describe a security issue that arises because of inconsistencies in the standards and the published literature regarding keylength. We prove a separation result between two versions of HMAC, which we denote HMAC and HMAC, the former being the real-world version standardized by Bellare et al...

متن کامل

A closer look at rock physics models and their assisted interpretation in seismic exploration

Subsurface rocks and their fluid content along with their architecture affect reflected seismic waves through variations in their travel time, reflection amplitude, and phase within the field of exploration seismology. The combined effects of these factors make subsurface interpretation by using reflection waves very difficult. Therefore, assistance from other subsurface disciplines is needed i...

متن کامل

How Judo Professionals Win and Lost in Competition: A Closer Look at Gender, Weight, Technique, and Gripping

Background. Judo coaches and athletes must understand the relevant technical content of the competition to improve their judo skills in Taiwan. Therefore, this study intends to explore the current situation and differences in scoring techniques of outstanding judo players and the impact on the victories or defeats of scoring techniques. Objectives. The purpose of this study is to explore the d...

متن کامل

A Closer Look to the Most Frequent Travelers’ Disease: A Systematic Update on Travelers’ Diarrhea

The present study, wants to highlight and review the most prevalent disease amongst travelers. In the current review, an updated review regarding epidemiology, involved pathogens, and a brief review of current evidence-based guidelines for prevention and treatment of this disease are provided. A distinguishing feature of the current review is the discussion of the impacts of irritable bowel syn...

متن کامل

Exploring Culture-Related Content in English Textbooks: A Closer Look at Advanced Series of Iran Language Institute

The aim of this article was to examine three advanced textbooks in Iran Language Institute (ILI) in an attempt to establish if they differ in the extent to which they represent dimension of big ‘C’ culture and little ‘c’ culture, their stance in distribution of references of cultural category, and also what themes predominate. The analysis identifies just the cultural elements, and culture–free...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:
  • IACR Cryptology ePrint Archive

دوره 2013  شماره 

صفحات  -

تاریخ انتشار 2013