BH GSO ISO/IEC 9797-2:2017
ISO/IEC 9797-2:2011
Bahraini Standard
Current Edition
·
Approved on
03 April 2017
Information technology -- Security techniques -- Message Authentication Codes (MACs) -- Part 2: Mechanisms using a dedicated hash-function
BH GSO ISO/IEC 9797-2:2017 Files
English
39 Pages
Current Edition
Reference Language
Obtaining this standard through the store is currently unavailable. You can acquire it directly from its source.
BH GSO ISO/IEC 9797-2:2017 Scope
Message Authentication Code (MAC) algorithms are data integrity mechanisms that compute a short string (the Message Authentication Code or MAC) as a complex function of every bit of the data and of a secret key. Their main security property is unforgeability: someone who does not know the secret key should not be able to predict the MAC on any new data string.
MAC algorithms can be used to provide data integrity. Their purpose is the detection of any unauthorized modification of the data such as deletion, insertion, or transportation of items within data. This includes both malicious and accidental modifications. MAC algorithms can also provide data origin authentication. This means that they can provide assurance that a message has been originated by an entity in possession of a specific secret key.
ISO/IEC 9797-2:2011 specifies three MAC algorithms that are based on a dedicated hash-function (selected from ISO/IEC 10118-3).
ISO/IEC 9797-2:2011 specifies three MAC algorithms that use a secret key and a hash-function (or its round-function) with an n-bit result to calculate an m-bit MAC.
The strength of the data integrity mechanism and message authentication mechanism is dependent on the length (in bits) k and secrecy of the key, on the length (in bits) n of the hash-function and its strength, on the length (in bits) m of the MAC, and on the specific mechanism.
The first mechanism specified in ISO/IEC 9797-2:2011 is commonly known as MDx-MAC. It calls the complete hash-function once, but it makes a small modification to the round-function by adding a key to the additive constants in the round-function. The second mechanism specified in ISO/IEC 9797-2:2011 is commonly known as HMAC. It calls the complete hash-function twice. The third mechanism specified in ISO/IEC 9797-2:2011 is a variant of MDx-MAC that takes as input only short strings (at most 256 bits). It offers a higher performance for applications that work with short input strings only.
Best Sellers From Information Sector
GSO ISO/TR 18492:2017
ISO/TR 18492:2005
Gulf Standard
Long-term preservation of electronic document-based information
GSO ISO/TS 23635:2024
ISO/TS 23635:2022
Gulf Standard
Blockchain and distributed ledger technologies — Guidelines for governance
BH GSO ISO/IEC 15773:2016
ISO/IEC 15773:1998
Bahraini Standard
Information technology -- Telecommunications and information exchange between systems -- Broadband Private Integrated Services Network -- Inter-exchange signalling protocol -- Transit counter additional network feature
GSO ISO/IEC 15773:2013
ISO/IEC 15773:1998
Gulf Standard
Information technology -- Telecommunications and information exchange between systems -- Broadband Private Integrated Services Network -- Inter-exchange signalling protocol -- Transit counter additional network feature
Recently Published from Information Sector
GSO ISO/IEC 23773-1:2026
ISO/IEC 23773-1:2024
Gulf Standard
Information technology — User interfaces for automatic simultaneous interpretation systems — Part 1: General
GSO ISO 19168-1:2026
ISO 19168-1:2025
Gulf Standard
Geographic information — Geospatial API for features — Part 1: Core
GSO ISO/IEC TS 33062:2026
ISO/IEC TS 33062:2025
Gulf Standard
Information technology — Process assessment — Process assessment model for quantitative processes to support higher levels of process capability in ISO/IEC 33020
GSO ISO/IEC TS 19770-10:2026
ISO/IEC TS 19770-10:2025
Gulf Standard
Information technology — IT asset management — Part 10: Guidance for implementing ITAM