Definition 2. Let E be a tweakable blockcipher that internally uses a dedicated blockcipher E. We say that it is optimally standard/ideal-model secure if for any distinguisher making q queries to its construction oracle and r evaluations of the primitive (where in the standard model, r = τ /τE): Advs/i-s˜prp(Ð) ≤ const · max{q, r} , ˜ min{|K|, |ł|} ˜|K|
Appears in 2 contracts
Sources: End User Agreement, End User Agreement
Definition 2. Let E be a tweakable blockcipher that internally uses a dedicated blockcipher E. We say that it is optimally standard/ideal-model secure if for any distinguisher making q queries to its construction oracle and r evaluations of the primitive (where in the standard model, r = τ /τE): Advs/i-s˜prp(Ðs˜prp(D) ≤ const · max{q, r} , ˜ min{|K|, |ł||M|} ˜|K|
Appears in 1 contract
Sources: End User Agreement