1

ChaCha20 along with Poly1305 provides confidentiality and integrity. Now suppose I cascade AES on top of ChaCha20. Is it safe to assume that the Poly1305 MAC is still secure, even if I cascade multiple ciphers? In other words, is one MAC enough to secure both ChaCha20 and AES?

Problem solved: Is Poly1305 an information-theoretically secure MAC?

Evan Su
  • 449
  • 1
  • 3
  • 15

0 Answers0