This inefficiency may be particularly high for some applications, like message authentication of signaling messages, where the individual messages may all fit within one or two blocks. Also for TCP/IP traffic it is well known that large number of packets (e.g. acknowledgment) have sizes around 40 bytes which fit within a block of most cryptographic hashes. We propose an enhancement that allows both short and long messages to be message authenticated more efficiently than HMAC while also providing proofs of security. In particular, for a message smaller than a block our MAC only requires one call to the compression function.
Category / Keywords: secret-key cryptography / message authentication, MAC, HMAC, MD5, SHA-1 Date: received 14 Nov 2001 Contact author: sarvar at lucent com Available format(s): Postscript (PS) | Compressed Postscript (PS.GZ) | BibTeX Citation Version: 20011114:185735 (All versions of this report) Short URL: ia.cr/2001/097 Discussion forum: Show discussion | Start new discussion