[Botan-devel] SQLite3 encryption codec with Botan

Jack Lloyd lloyd at randombit.net
Mon Apr 20 17:11:02 EDT 2009

On Sun, Apr 19, 2009 at 12:32:21PM +0800, Mr Diggilin wrote:
> Also, it's not compromising anything to use the current encryption key
> for the cmac is it? Since it's just being used to deliver IVs...

I would be willing to call using CMAC with the same key just for IV
generation 'probably OK'.

> It makes things easier, otherwise I'd have to generate two mac keys
> (one for read, one write) even though they are only going one way.

Could you explain this? I don't really understand why you would need
two keys in this usage.


