作者: Phillip Rogaway
DOI:
关键词:
摘要: A parallelizable variable-input-length pseudorandom function constructed out of a fixed-input-length function. The can be used as message authentication code. from which it is built block cipher. In one embodiment, using an n-bit cipher, the given key mapped into sequence offsets, and partitioned blocks final fragment that may shorter. Each xored with corresponding offset then cipher applied. resulting output are together, also padded fragment, to yield partial checksum. An additional checksum, depending on length applied result being constructed.