CBC MAC for real-time data sources

被引:0
|
作者
Petrank, F [1 ]
Rackoff, C
机构
[1] Technion Israel Inst Technol, Dept Comp Sci, IL-32000 Haifa, Israel
[2] Univ Toronto, Dept Comp Sci, Toronto, ON M5S 3G4, Canada
关键词
message authentication; real time; cipher block chaining; block ciphers;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The Cipher Block Chaining (CBC) Message Authentication Code (MAC) is an authentication method which is widely used in practice. It is well known that the use of the CBC MAC for variable length messages is not secure, and a few rules of thumb for the correct use of the CBC MAC are known by folklore. The first rigorous proof of the security of CBC MAC, when used on fixed length messages, was given only recently by Bellare et al. [3]. They also suggested variants of CBC MAC that handle variable-length messages but in these variants the length of the message has to be known in advance (i.e., before the message is processed). We study CBC authentication of real-time applications in which the length of the message is not known until the message ends, and furthermore, since the application is real-time, it is not possible to start processing the authentication until after the message ends. We first consider a variant of CBC MAC, that we call the encrypted CBC MAC (EMAC), which handles messages of variable unknown lengths. Computing EMAC on a message is virtually as simple and as efficient as computing the standard CBC MAC on the message. We provide a rigorous proof that its security is implied by the security of the underlying block cipher. Next, we argue that the basic CBC MAC is secure when applied to a prefix-free message space. A message space can be made prefix-free by also authenticating the (usually hidden) last character which marks the end of the message.
引用
收藏
页码:315 / 338
页数:24
相关论文
共 50 条
  • [21] Real-time tracking of risk for hypoglycaemia in diabetes using multiple data sources
    Fabris, C.
    Kovatchev, B.
    Breton, M.
    DIABETOLOGIA, 2016, 59 : S409 - S410
  • [22] Real-time/near real-time recce wideband data links
    Robinson, R.S.
    Proceedings of SPIE - The International Society for Optical Engineering, (154-163):
  • [23] TDMH-MAC: Real-time and multi-hop in the same wireless MAC
    Terraneo, Federico
    Polidori, Paolo
    Leva, Alberto
    Fornaciari, William
    2018 39TH IEEE REAL-TIME SYSTEMS SYMPOSIUM (RTSS 2018), 2018, : 277 - 287
  • [24] A general framework of multiple coordinative data fusion modules for real-time and heterogeneous data sources
    Kashinath, Shafiza Ariffin
    Mostafa, Salama A.
    Lim, David
    Mustapha, Aida
    Hafit, Hanayanti
    Darman, Rozanawati
    JOURNAL OF INTELLIGENT SYSTEMS, 2021, 30 (01) : 947 - 965
  • [25] Real-time data mining
    不详
    EXPERT SYSTEMS, 1997, 14 (03) : 157 - 157
  • [26] REAL-TIME DATA ACQUISITION
    BUNNELL, M
    BUNNELL, M
    DR DOBBS JOURNAL, 1989, 14 (06): : 36 - &
  • [27] VISUALIZING DATA IN REAL-TIME
    FARLEY, JF
    VARHOL, PD
    DR DOBBS JOURNAL, 1993, 18 (13): : 58 - &
  • [28] REAL-TIME DATA TRANSPORT
    SHACHAM, N
    CRAIGHILL, EJ
    COMPUTER NETWORKS AND ISDN SYSTEMS, 1982, 6 (05): : 367 - 367
  • [29] The Downside of Real-Time Data
    Yu, Larry
    MIT SLOAN MANAGEMENT REVIEW, 2008, 50 (01) : 9 - 10
  • [30] Real-time drilling data
    不详
    MECHANICAL ENGINEERING, 2001, 123 (06) : 30 - 30