[snipping liberally]
On Mon, 28 Dec 2015 17:43:14 -0500
Nick Mathewson wrote:
> 3.3. Why _not_ AEZ?
>
>There are also some reasons to consider avoiding AEZ, even if we do
>decide to use a wide-block cipher.
>
>FIRST it is complicated to implement. As the specification says,
>"
[Okay, I'm pulling this out of draft stage. Still not sure this is the
right primitive, but I'm pretty sure this would be about the right way
to do it.]
Filename: 261-aez-crypto.txt
Title: AEZ for relay cryptography
Author: Nick Mathewson
Created: 28 Oct 2015
Status: Open
0. History
I wrote t