Re: [Cfrg] Mechanism of using block cipher

David McGrew <mcgrew@cisco.com> Thu, 30 June 2011 16:54 UTC

Return-Path: <mcgrew@cisco.com>
X-Original-To: cfrg@ietfa.amsl.com
Delivered-To: cfrg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E59E911E80D4 for <cfrg@ietfa.amsl.com>; Thu, 30 Jun 2011 09:54:01 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -110.599
X-Spam-Level:
X-Spam-Status: No, score=-110.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_HI=-8, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id wKaITmkgk7CX for <cfrg@ietfa.amsl.com>; Thu, 30 Jun 2011 09:53:58 -0700 (PDT)
Received: from sj-iport-6.cisco.com (sj-iport-6.cisco.com [171.71.176.117]) by ietfa.amsl.com (Postfix) with ESMTP id A672A11E81A0 for <cfrg@irtf.org>; Thu, 30 Jun 2011 09:53:58 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=mcgrew@cisco.com; l=1335; q=dns/txt; s=iport; t=1309452838; x=1310662438; h=cc:message-id:from:to:in-reply-to: content-transfer-encoding:mime-version:subject:date: references; bh=2N316Q1ObMO+lPE2ETaa+dztzWgylZgSNrAhQTiX9Io=; b=mNJ8ECJVRPKWMD4VvK5GJsiRwK/i26GvMfj8VRebhEnPRIaja2T/mDv4 M+ZbeRB15BPlIvu/F3jgJ4r+2b+8kwDFS2TkodOlR92DGUo5yYV3th7yI by1a0Q5Nao23gUfa8/VT1hGpl7hds31ic2ggdbqTop8iHlQEkzzTMZAKo 8=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: Av0EAL+pDE6rRDoI/2dsb2JhbABSp1Z3iHihTJ18hjEEh0CKb5BO
X-IronPort-AV: E=Sophos;i="4.65,451,1304294400"; d="scan'208";a="724890214"
Received: from mtv-core-3.cisco.com ([171.68.58.8]) by sj-iport-6.cisco.com with ESMTP; 30 Jun 2011 16:53:58 +0000
Received: from stealth-10-32-254-214.cisco.com (stealth-10-32-254-214.cisco.com [10.32.254.214]) by mtv-core-3.cisco.com (8.14.3/8.14.3) with ESMTP id p5UGrvWT021894; Thu, 30 Jun 2011 16:53:57 GMT
Message-Id: <CEFC3182-AC0D-4E8D-8810-DB9199517BE9@cisco.com>
From: David McGrew <mcgrew@cisco.com>
To: A SUGANYA <asuganya@rediffmail.com>
In-Reply-To: <F5B7568B-213F-4BB1-857E-2D6D5170BF2D@qualcomm.com>
Content-Type: text/plain; charset="US-ASCII"; format="flowed"; delsp="yes"
Content-Transfer-Encoding: 7bit
Mime-Version: 1.0 (Apple Message framework v936)
Date: Thu, 30 Jun 2011 09:53:56 -0700
References: <20110630123222.20508.qmail@f5mail-224-146.rediffmail.com> <F5B7568B-213F-4BB1-857E-2D6D5170BF2D@qualcomm.com>
X-Mailer: Apple Mail (2.936)
Cc: Greg Rose <ggr@qualcomm.com>, cfrg@irtf.org
Subject: Re: [Cfrg] Mechanism of using block cipher
X-BeenThere: cfrg@irtf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Crypto Forum Research Group <cfrg.irtf.org>
List-Unsubscribe: <http://www.irtf.org/mailman/options/cfrg>, <mailto:cfrg-request@irtf.org?subject=unsubscribe>
List-Archive: <http://www.irtf.org/mail-archive/web/cfrg>
List-Post: <mailto:cfrg@irtf.org>
List-Help: <mailto:cfrg-request@irtf.org?subject=help>
List-Subscribe: <http://www.irtf.org/mailman/listinfo/cfrg>, <mailto:cfrg-request@irtf.org?subject=subscribe>
X-List-Received-Date: Thu, 30 Jun 2011 16:54:03 -0000

Hi Suganya,

AES-GCM is what 802.1AE MAC Security uses for frame encryption, see http://www.ieee802.org/1/pages/802.1ae.html 
    If you are looking to protect ethernet frames, it seems like you  
would be interested in that standard.  It is supported in commercially  
available ethernet ASICs and some higher end NIC cards.

David

On Jun 30, 2011, at 9:42 AM, Rose, Greg wrote:

> You could use CCM mode (for compatibility with WiFi) or EAX mode.
>
> Greg.
>
> On 2011 Jun 30, at 5:32 , A SUGANYA wrote:
>
>> I would like to know about a mechanism of using AES-128 block  
>> cipher (in any secure mode of operation) for frame (Ethernet frame  
>> at data link layer) encryption. Please note that the size of frame  
>> will not be multiples of block size and frame size will not be  
>> constant for all frames. Also, for synchronisation purpose we  
>> prefer not to carry-forward the current frame bits to next frame.
>>
>>
>> Suganya
>>
>> Treat yourself at a restaurant, spa, resort and much more with  
>> Rediff Deal ho jaye!_______________________________________________
>> Cfrg mailing list
>> Cfrg@irtf.org
>> http://www.irtf.org/mailman/listinfo/cfrg
>
> _______________________________________________
> Cfrg mailing list
> Cfrg@irtf.org
> http://www.irtf.org/mailman/listinfo/cfrg