[Cryptography-dev] GCM tag truncation, backwards compatibility

Glyph glyph at twistedmatrix.com
Mon Jun 30 20:32:57 CEST 2014

On Jun 30, 2014, at 11:29 AM, Paul Kehrer <paul.l.kehrer at gmail.com> wrote:

> If we entirely disable truncation we have a significant set of NIST vectors we can’t run tests against. It might be worth it though. I’ve never heard a good case for truncation outside of “well NIST allows it”.

NIST has allowed some other stuff too though, I seem to remember seeing their name in the news a little while back.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mail.python.org/pipermail/cryptography-dev/attachments/20140630/343459d1/attachment.html>

More information about the Cryptography-dev mailing list