Skip to main content

OCB For Block Ciphers Without 128-Bit Blocks

Document Type Expired Internet-Draft (individual)
Expired & archived
Author Ted Krovetz
Last updated 2019-04-18 (Latest revision 2018-05-11)
RFC stream (None)
Intended RFC status (None)
Stream Stream state (No stream defined)
Consensus boilerplate Unknown
RFC Editor Note (None)
IESG IESG state Expired
Telechat date (None)
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:


The OCB authenticated-encryption algorithm is specified in RFC 7523, but only for blockciphers with 128-bit blocks such as AES. This document extends RFC 7523 by specifying how OCB is used with blockciphers of any blocklength. When the blocklength is 128 bits, this specification and that in RFC 7523 are identical.


Ted Krovetz

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)