tls-1----Page:5
1  2  3  4  5  6  7 

SIV Encrypt SIV Decrypt
AD1
ADn
S2V-CMAC
P
CTR

IV
C
AD1
ADn
S2V-CMAC
P
CTR

IV
C
IV’
FAIL
!=
Associated Data
Plaintext
Ciphertext
From “Deterministic Authenticated Encryption”
by Phil Rogaway and Thomas Shrimpton
PPT Version