n |
AEAD block length (in bits) |
k |
AEAD key length (in bits) |
r |
AEAD nonce length (in bits) |
t |
Size of the authentication tag (in bits) |
L |
Maximum length of each message, including both plaintext and AAD (in blocks) |
s |
Total plaintext length in all messages (in blocks) |
q |
Number of protected messages (AEAD encryption invocations) |
v |
Number of attacker forgery attempts (failed AEAD decryption invocations + 1) |
p |
Upper bound on adversary attack probability |
o |
Offline adversary work (time, measured in number of encryption and decryption queries; multi-key setting only) |
u |
Number of keys (multi-key setting only) |
B |
Maximum number of blocks encrypted by any key (multi-key setting only) |