Question: Galois Counter Mode ( GCM ) provides authentication using GHASH unit. Suppose we get the polynomial for the 1 2 8 - bit hash subkey

Galois Counter Mode (GCM) provides authentication using GHASH unit. Suppose we get the
polynomial for the 128-bit hash subkey (H) as: H(x)=x27+x25+x20+x4+x+1. Also, as you know,
the irreducible polynomial for GCM is: P(x)=x128+x7+x2+x+1. Find the polynomial
representing (x)=(M1*H+M2)*HmodP(x) assuming the two 128-bit input blocks to GHASH
are as follows: M1=x89+x23+x10,M2=x93+x24+x10+x.
(x)=(M1*H+M2)*Hmodp(x) is what you have to derive in GF(2128) after reduction. This is a very
simple calculation which is done in practice thousands of times for eventually deriving a tag.
Galois Counter Mode ( GCM ) provides

Step by Step Solution

There are 3 Steps involved in it

1 Expert Approved Answer
Step: 1 Unlock blur-text-image
Question Has Been Solved by an Expert!

Get step-by-step solutions from verified subject matter experts

Step: 2 Unlock
Step: 3 Unlock

Students Have Also Explored These Related Programming Questions!