消息认证码是保证消息完整性的重要工具,它广泛应用于各种安全系统中.随着可证明安全理论的逐渐成熟,具备可证明安全的消息认证码无疑成为人们的首选.本文基于XORMAC和PMAC的构造方法,使用分组密码构造了一种确定性、可并行的消息认证码.DXOR MAC(Deterministic XOR MAC).在底层分组密码是伪随机置换的假设下,本文使用Game-Playing技术量化了攻击者成功伪造的概率,从而证明了其安全性.
The most important tool to protect data integrity is Message Authentication Code(MAC), which is widely used in many kinds of secure systems.With the development of the theory of provable security,the MACs, which have security proof, are the first choice of many people.Based on the constructions of XOR MAC and PMAC, we define a deterministic fully parallelizable block-cipher mode of operation for message authenficafion-DXOR MAC(Deterministic XOR MAC). We prove its security, quantifying an adversary's forgery probability in terms of the quality of the block cipher as a pseudo-random permutation.