GCM

E171106

GCM (Galois/Counter Mode) is an authenticated encryption mode for block ciphers that provides both data confidentiality and integrity with high performance and parallelizability.

All labels observed (2)

Label Occurrences
GCM canonical 3
GCM mode 1

How this entity was disambiguated

Statements (47)

Predicate Object
instanceOf authenticated encryption mode
block cipher mode of operation
abbreviation GCM
advantage combined encryption and authentication
hardware efficiency
high degree of parallelism
alsoKnownAs GCM mode
linked to: GCM
authenticationStructure GHASH
basedOn Galois field multiplication
category AEAD scheme
commonlyUsedIn IPsec
SSH
TLS
disk encryption
comparedWith CCM
designedFor high performance
low latency
encryptionStructure counter mode
operatesOn 128-bit block ciphers
outputs authentication tag
ciphertext
protects associated data
provides authentication
data confidentiality
data integrity
requires unique nonce per key
securityDependsOn underlying block cipher security
standardizedBy NIST
standardizedIn NIST SP 800-38D
supports parallelizable authentication
parallelizable encryption
streaming of data blocks
supportsKeySize 128-bit
192-bit
256-bit
supportsTagLength 104-bit
112-bit
120-bit
128-bit
32-bit (optional)
64-bit (optional)
96-bit
typicallyUses AES
uses block cipher
usesNonceLength 96-bit (recommended)
vulnerableIf nonce is reused with same key
yearStandardized 2007

How these facts were elicited

Referenced by (4)

Full triples — surface form annotated when it differs from this entity's canonical label.

Galois/Counter Mode alsoKnownAs GCM mode
subject linked to: GCM
linked to: GCM