OCB For Block Ciphers Without 128-Bit Blocks

Document Type Expired Internet-Draft (individual)
Last updated 2018-11-12 (latest revision 2018-05-11)
Stream ISE
Intended RFC status (None)
Expired & archived
plain text pdf html bibtex
Stream ISE state (None)
Consensus Boilerplate Unknown
Document shepherd Adrian Farrel
IESG IESG state Expired
Telechat date
Responsible AD (None)
Send notices to Adrian Farrel <rfc-ise@rfc-editor.org>

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


The OCB authenticated-encryption algorithm is specified in RFC 7523, but only for blockciphers with 128-bit blocks such as AES. This document extends RFC 7523 by specifying how OCB is used with blockciphers of any blocklength. When the blocklength is 128 bits, this specification and that in RFC 7523 are identical.


Ted Krovetz (ted@krovetz.net)

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)