Paper 2017/184

Linking Online Misuse-Resistant Authenticated Encryption and Blockwise Attack Models

Guillaume Endignoux and Damian Vizár

Abstract

Real-world applications of authenticated encryption often require the encryption to be computable {online}, e.g. to compute the $i^{\textrm{th}}$ block of ciphertext after having processed the first $i$ blocks of plaintext. A significant line of research was dedicated to identifying security notions for online authenticated encryption schemes, that capture various security goals related to real-life scenarios. Fouque, Joux, Martinet and Valette proposed definitions of privacy and integrity against adversaries that can query their oracles in a blockwise-adaptive manner, to model memory-constrained applications. A decade later, Fleischmann, Forler and Lucks proposed the notion of online nonce misuse-resistant authenticated encryption (OAE) to capture the security of online authenticated encryption under nonce-reuse. In this work we investigate the relation between these notions. We first recast the blockwise notions of Fouque et al. to make them compatible with online authenticated encryption schemes that support headers. We then show that OAE and the conjunction of the blockwise notions are "almost" equivalent. We identify the missing property on the side of blockwise notions, and formalize it under the name PRTAG. With PRTAG being just an auxiliary definition, the equivalence we finally show suggests that OAE and the blockwise model for online authenticated encryption capture essentially the same notion of security.

Metadata
Available format(s)
PDF
Category
Secret-key cryptography
Publication info
Published by the IACR in FSE 2017
Keywords
Symmetric-key CryptographyAuthenticated EncryptionOnline EncryptionSecurity Notions
Contact author(s)
damian vizar @ epfl ch
History
2017-02-28: received
Short URL
https://ia.cr/2017/184
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2017/184,
      author = {Guillaume Endignoux and Damian Vizár},
      title = {Linking Online Misuse-Resistant Authenticated Encryption and Blockwise Attack Models},
      howpublished = {Cryptology {ePrint} Archive, Paper 2017/184},
      year = {2017},
      url = {https://eprint.iacr.org/2017/184}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.