AES-GCM-SIV: Nonce Misuse-Resistant Authenticated Encryption

AES-GCM-SIV: Nonce Misuse-Resistant Authenticated Encryption

Internet Research Task Force (IRTF) S. Gueron
Request for Comments: 8452 University of Haifa and Amazon
Category: Informational A. Langley
ISSN: 2070-1721 Google LLC
Y. Lindell
Bar-Ilan University and Unbound Tech
April 2019

AES-GCM-SIV: Nonce Misuse-Resistant Authenticated Encryption

Abstract

This memo specifies two authenticated encryption algorithms that are
nonce misuse resistant — that is, they do not fail catastrophically
if a nonce is repeated. These results might not be suitable for
deployment. s.

Source: www.rfc-editor.org