Cryptographic Token Interface Standard

PKCS#11


BATON-CBC128

BATON-CBC128, denoted CKM_BATON_CBC128, is a mechanism for single- and multiple-part encryption and decryption with BATON in 128-bit cipher-block chaining mode.

It has a parameter, a 24-byte initialization vector. During an encryption operation, this IV is set to some value generated by the token"in other words, the application cannot specify a particular IV when encrypting. It can, of course, specify a particular IV when decrypting.

Constraints on key types and the length of data are summarized in the following table:

Table 118, BATON-CBC128: Data and Length
Function Key type
Input length
Output length
Comments
C_Encrypt BATON
multiple of 16
same as input length
no final part
C_Decrypt BATON
multiple of 16
same as input length
no final part


RSA Security Inc. Public-Key Cryptography Standards - PKCS#11 - v220