On Sep 22, 2025, at 10:47 AM, Deb Cooley <[email protected]> wrote: > > "The systems are highly constrained. and don't have AES in hardware." You > know this for an absolute fact?
It's what I've been told. I will double-check and confirm. > AES has been a standard cell in cell libraries for decades. If it is > there, then there is a mechanism which is already evaluated, and fast. [note > I'm not talking about AES 256, just normal AES 128 running in OFB mode.] > > [I'm not super thrilled about trading one unevaluated algorithm for another - > SIPHASH] I understand.
