摘要: We present an efficient key wrapping scheme that uses a single public permutation as the basic element. As does not rely on block ciphers, it can be used resource-constrained device where such comes from implemented hash function, regular (SHA-3/Keccak) or lightweight one (Quark, Photon). The is capable of keys up to 1400 bits long and processing arbitrarily headers. Our easily delivers security level 128 higher with master same length.