Abstract :
There are well-known methods to construct message au- thentication codes using universal hash functions. This ap- proch is very promising as it provides schemes that are both efficient and provably secure under reasonable as- sumptions. But those schemes all need two keys, one for the universal hash function and one for the block cipher. Hash127MAC, proposed here, uses only one key and can be proved security under reasonable assumptions. 1