tls-1----Page:5
1
2
3
4
5
6
7
SIV Encrypt SIV Decrypt
AD1
ADn
S2V-CMAC
P
CTR
…
IV
C
AD1
ADn
S2V-CMAC
P
CTR
…
IV
C
IV’
FAIL
!=
Associated Data
Plaintext
Ciphertext
From “Deterministic Authenticated Encryption”
by Phil Rogaway and Thomas Shrimpton
PPT Version