[noise] Thoughts on semi-deterministic encryption

Jonathan Moore moore at eds.org
Tue Aug 26 12:44:52 PDT 2014

On Tue, Aug 26, 2014 at 12:28 PM, Tony Arcieri <bascule at gmail.com> wrote:

> If you want a deterministic nonce, why not use a counter instead of SIV?

That would work well for session keys but not long term ones. For long term
keys I believe that avoiding counter is likely impossible. My particular
use case is write caps in a cryptographic capabilities system.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://moderncrypto.org/mail-archive/noise/attachments/20140826/344c2e97/attachment.html>

More information about the Noise mailing list