3 ms·
I guess I'm still unclear how that would work in the context of AES. Or really any symmetric construction, come to think of it.
by sdevlin 12y ago
I guess I'm still unclear how that would work in the context of AES. Or really any symmetric construction, come to think of it.
- bascule 12y agoIt isn't used for symmetric encryption algorithms. They're more easily made verifiably constant time as described in the blog post. It's a common way to protect something like RSA from timing sidechannels, however.