> Hi,
>> There are two talks about how to implement AES efficiently, this one
>> describes on slide 9 how one will typically combine SubBytes,
>> ShiftRows, and MixColumns into one operation operating on diagonals.
>> I don't know if that will matter for us?
> I don't think so because lookup tables are not efficient in MPC.

Ah, of course! I had not thought of that.

By the way, everybody should take a look at the "Stick Figure Guide to
the Advanced Encryption Standard (AES)":

