malv wrote: |
Q. for Mr. Schneier:
The upcoming IEEE standard for Tweakable Narrow Block Encryption to my knowledge only deals with LRW-AES. Recently, LRW seems to be applied by some accross the board for all ciphers instead of CBC. Can any comments be made as to the desirability of LRW for ciphers other than AES? Should LRW-AES be considered as the 'best' at present time with regard to attacks? Thank you malv |
output generated using printer-friendly topic mod, All times are GMT + 2 Hours