[Cryptography] Literature on reusing same key for AES / HMAC?

Krisztián Pintér pinterkr at gmail.com
Sun Nov 8 18:24:49 EST 2015


Jerry Leichter (at Sunday, November 8, 2015, 10:37:20 PM):

>> but as you brought it up, the notion that encrypt-then-MAC would be
>> the secure option over mac-then-encrypt is just as false the other
>> weird recommendations we often hear. in fact they are both equally
>> secure if implemented right....

> Well, we really are off into the woods here.

> The paper to refer to is
> http://citeseerx.ist.psu.edu/viewdoc/download?doi=10.1.1.106.5488&rep=rep1&type=pdf


i can not imagine an article less relevant to actual cryptography.
with no exception, our sym enc algos are practically pseudorandom
functions/permutations. as soon as you can use the random oracle model
to approximate your primitives, this entire reasoning evaporates.



More information about the cryptography mailing list