The authenticated encryption schemes Kravatte-SANE and Kravatte-SANSE

Guido Bertoni and Joan Daemen and Seth Hoffert and MichaŽl Peeters and Gilles Van Assche and Ronny Van Keer

Abstract: This note defines Kravatte-SANE and Kravatte-SANSE. Both are session authenticated encryption schemes and differ in their robustness with respect to nonce misuse. They are defined as instances of modes on top of the deck function Kravatte, where a deck function is a keyed function with variable-length input strings, an arbitrary-length output and certain incrementality properties.

Category / Keywords: secret-key cryptography / permutation-based crypto, Farfalle, Kravatte, deck functions, authenticated encryption

Date: received 12 Oct 2018

