Cryptographic Token Interface Standard

PKCS#11


AES-CCM authenticated Encryption / Decryption

For IPsec (RFC 4309) and also for use in ZFS encryption. Generic CCM mode is described in [RFC 3610].

To set up for AES-CCM use the following process, where K (key), nonce and additional authenticated data are as described in [RFC 3610].

Encrypt:


RSA Security Inc. Public-Key Cryptography Standards - PKCS#11 - v230