Last update: August the 12th, 1998.

Several errors have been reported in the following DFC documents:
  • the extended abstract
  • the full report
  • the DFC announcement



  • In the full report Eq. (26) on p. 9 (as well as Eq. (22) in the extended abstract on p. 8), KC and KD has been flipped. It should read

    EES=RT(0)|RT(1)|...|RT(63)|KD|KC.

    In the extended abstract on p. 9, the two last lines of the EES string have been mixed up (this is a consequence of flipping KC and KD). It should read

    78d56ced 94640d6e f0d3d37b e67008e1 86d1bf27 5b9b241d
    eb64749a

    We have been argued that some of our benchmarks do not yield a faster encryption rate than for DES (especially on 32-bit microprocessors) as we claimed in the DFC announcement. Those figures are however very close to and our updated benchmarks are now faster.
    In the full report Theorem 1 on p. 23, (3/4)n should read (3/4)n-1. Same remark on p. 24, l. 8.

    You are very welcome for reporting any other error.

    Many thanks to all contributors: Robert Harley, Helger Lipmaa, Brian Gladman and Ron Rivest.



    Return to the DFC home page.