Message Authentication Codes

Message Authentication Codes
复制标题

DOI:
10.1002/9781118722367.ch6
复制
发表时间:
2015-10
期刊:
--
影响因子:
--
通讯作者:
N. Ferguson;B. Schneier;Tadayoshi Kohno
N. Ferguson;B. Schneier;Tadayoshi Kohno
中科院分区:
其他
文献类型:
--
作者:
N. Ferguson;B. Schneier;Tadayoshi Kohno

文献摘要

被引文献

相似文献

消息验证码或MAC是一种检测消息篡改的结构。MAC是采用固定大小的密钥K和任意大小的消息m这两个自变量并产生固定大小的MAC值的函数。有多种方法可以定义MAC的安全性。本章描述了作者基于理想MAC函数的概念的定义,类似于理想分组密码的概念。CBC-MAC是将分组密码转换为MAC的经典方法。CMAC的工作原理与CBC-MAC几乎完全相同,只是它对最后一个块的处理方式不同。HMAC结构整齐、高效、易于实现,并与SHA-1散列函数一起广泛使用。NIST最近标准化了一种新的MAC,称为GMAC,这是一种为128位分组密码设计的非常高效的硬件和软件。
A message authentication code, or MAC, is a construction that detects tampering with messages. A MAC is a function that takes two arguments, a fixed‐size key K and an arbitrarily sized message m, and produces a fixed‐size MAC value. There are various ways to define the security of a MAC. The chapter describes the authors' definition based on the notion of an ideal MAC function, similar to the notion of an ideal block cipher. CBC‐MAC is a classic method of turning a block cipher into a MAC. CMAC works almost exactly like CBC‐MAC, except it treats the last block differently. The HMAC construction is neat, efficient, and easy to implement and widely used with the SHA‐1 hash function. NIST recently standardized a new MAC, called GMAC, a very efficient in hardware and software designed for 128‐bit block ciphers.