Dont forget, being based on a block cipher, the mac's feedback process reflected in the next round's IV can vary. In GP, the choice depends on the SCP selected.

Think of SCP as the choice of "ciphersuite" - a term from the SSL world


----- Message ----- From: "Mladen Gavrilovic" <[EMAIL PROTECTED]>
To: "MUSCLE" <[EMAIL PROTECTED]>
Sent: Friday, December 03, 2004 1:27 PM


In this case, you can just do 2DES (3DES where key 1 = key 3) on the 24-byte
chunk described in the GlobalPlatform specification, with a beginning IV of
zero (successive IVs are the MAC of the previous step). The last 8-bytes of
the 24-byte cyphertext are the MAC.
_______________________________________________
Muscle mailing list
[EMAIL PROTECTED]
http://lists.drizzle.com/mailman/listinfo/muscle

Reply via email to