message authentication code (MAC)
Term · Cybersecurity · MLC-T-CYB-002658
1. A family of secret-key cryptographic algorithms acting on input data of arbitrary length to produce an output value of a specified length (called the MAC of the input data). The MAC can be employed to provide an authentication of the origin of data and/or data-integrity protection. In this Recommendation, approved MAC algorithms are used to determine families of pseudorandom functions (indexed by the choice of key) that are employed during key derivation.
2. A cryptographic checksum on data that uses a symmetric key to detect both accidental and intentional modifications of the data. MACs provide authenticity and integrity protection but not non-repudiation protection.
3. A family of symmetric-key cryptographic algorithms that act on input data of arbitrary length to produce an output value of a specified length (i.e., the MAC of the input data). The MAC can be employed to authenticate the origin of the input data and/or provide data integrity protection.
4. A cryptographic checksum on data that uses a symmetric key to detect both accidental and intentional modifications of the data.
See checksum.
5. Message Authentication Code.
6. A family of cryptographic algorithms that is parameterized by a symmetric key. Each of the algorithms can act on input data of arbitrary length to produce an output value of a specified length (called the MAC of the input data). A MAC algorithm can be used to provide data origin authentication and data integrity.
7. a data authenticator generated from the message, usually through cryptographic techniques. In general, a cryptographic key is also required as an input.
8. A cryptographic checksum on data that uses a symmetric key to detect both accidental and intentional modifications of data.
9. A bit string of fixed length, computed by a MAC generation algorithm, that is used to establish the authenticity and, hence, the integrity of a message.
10. A cryptographic checksum on data that is designed to reveal both accidental errors and intentional modifications of the data.
11. A cryptographic checksum on data that uses an approved security function and a symmetric key to detect both accidental and intentional modifications of data.
12. A cryptographic checksum on data that uses a symmetric key to detect both accidental and intentional modifications of the data. MACs provide authenticity and integrity protection, but not non-repudiation protection.
13. A cryptographic checksum based on an approved cryptographic function and a symmetric key to detect both accidental and intentional modifications of data.
14. A family of cryptographic algorithms that is parameterized by a symmetric key. Each of the algorithms can act on input data (called a message) of an arbitrary length to produce an output value of a specified length (called the MAC of the input data). A MAC algorithm can be used to provide data origin authentication and data integrity protection. In this Recommendation, a MAC algorithm is also called a MAC function.
15. A cryptographic checksum on data that uses a symmetric key to detect both accidental and intentional modifications of the data.
| Identifier | MLC-T-CYB-002658 |
|---|---|
| Field | Cybersecurity |
| Abbreviation | MAC |
| References | NIST SP 800-108r1 [August 2022 (Includes updates as of 02-02-2024)]; NIST SP 800-63-4; NIST SP 800-227; CNSSI 4009-2015 from FIPS 201-1; NIST SP 800-108 [Superseded]; NIST SP 800-56C [Superseded]; NIST SP 800-108 [Superseded]; NIST SP 800-15 [Withdrawn]; NIST SP 800-152; NIST SP 800-57 Part 1 Rev. 3 [Superseded]; NIST SP 800-38B; NIST SP 800-38C; NIST SP 800-57 Part 1 Rev. 4 [Superseded]; NIST SP 800-57 Part 1 Rev. 5; NIST SP 800-175B Rev. 1; NIST SP 800-133 Rev. 2; NIST SP 800-63-3 [Superseded]; NIST SP 800-63-2 [Superseded]; NIST SP 800-57 Part 2 Rev.1; NIST SP 800-56C [Superseded]; NISTIR 7711; FIPS 201 [version unknown]; NIST CSRC Glossary |
| See also | checksum |
Record as JSON
{
"id": "MLC-T-CYB-002658",
"term": "message authentication code (MAC)",
"field": "Cybersecurity",
"definition": "1. A family of secret-key cryptographic algorithms acting on input data of arbitrary length to produce an output value of a specified length (called the MAC of the input data). The MAC can be employed to provide an authentication of the origin of data and/or data-integrity protection. In this Recommendation, approved MAC algorithms are used to determine families of pseudorandom functions (indexed by the choice of key) that are employed during key derivation.\n\n2. A cryptographic checksum on data that uses a symmetric key to detect both accidental and intentional modifications of the data. MACs provide authenticity and integrity protection but not non-repudiation protection.\n\n3. A family of symmetric-key cryptographic algorithms that act on input data of arbitrary length to produce an output value of a specified length (i.e., the MAC of the input data). The MAC can be employed to authenticate the origin of the input data and/or provide data integrity protection.\n\n4. A cryptographic checksum on data that uses a symmetric key to detect both accidental and intentional modifications of the data.\nSee checksum.\n\n5. Message Authentication Code.\n\n6. A family of cryptographic algorithms that is parameterized by a symmetric key. Each of the algorithms can act on input data of arbitrary length to produce an output value of a specified length (called the MAC of the input data). A MAC algorithm can be used to provide data origin authentication and data integrity.\n\n7. a data authenticator generated from the message, usually through cryptographic techniques. In general, a cryptographic key is also required as an input.\n\n8. A cryptographic checksum on data that uses a symmetric key to detect both accidental and intentional modifications of data.\n\n9. A bit string of fixed length, computed by a MAC generation algorithm, that is used to establish the authenticity and, hence, the integrity of a message.\n\n10. A cryptographic checksum on data that is designed to reveal both accidental errors and intentional modifications of the data.\n\n11. A cryptographic checksum on data that uses an approved security function and a symmetric key to detect both accidental and intentional modifications of data.\n\n12. A cryptographic checksum on data that uses a symmetric key to detect both accidental and intentional modifications of the data. MACs provide authenticity and integrity protection, but not non-repudiation protection.\n\n13. A cryptographic checksum based on an approved cryptographic function and a symmetric key to detect both accidental and intentional modifications of data.\n\n14. A family of cryptographic algorithms that is parameterized by a symmetric key. Each of the algorithms can act on input data (called a message) of an arbitrary length to produce an output value of a specified length (called the MAC of the input data). A MAC algorithm can be used to provide data origin authentication and data integrity protection. In this Recommendation, a MAC algorithm is also called a MAC function.\n\n15. A cryptographic checksum on data that uses a symmetric key to detect both accidental and intentional modifications of the data.",
"abbreviation": "MAC",
"see_also": [
"checksum"
],
"references": [
"NIST SP 800-108r1 [August 2022 (Includes updates as of 02-02-2024)]",
"NIST SP 800-63-4",
"NIST SP 800-227",
"CNSSI 4009-2015 from FIPS 201-1",
"NIST SP 800-108 [Superseded]; NIST SP 800-56C [Superseded]",
"NIST SP 800-108 [Superseded]",
"NIST SP 800-15 [Withdrawn]",
"NIST SP 800-152; NIST SP 800-57 Part 1 Rev. 3 [Superseded]",
"NIST SP 800-38B",
"NIST SP 800-38C",
"NIST SP 800-57 Part 1 Rev. 4 [Superseded]; NIST SP 800-57 Part 1 Rev. 5; NIST SP 800-175B Rev. 1; NIST SP 800-133 Rev. 2",
"NIST SP 800-63-3 [Superseded]; NIST SP 800-63-2 [Superseded]",
"NIST SP 800-57 Part 2 Rev.1",
"NIST SP 800-56C [Superseded]",
"NISTIR 7711; FIPS 201 [version unknown]",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/message-authentication-code-mac/"
}
Record 2,658 of 4,693 in Cybersecurity terminology (MLC-0102). Request the full dataset.