I wrote: > ...packet sizes are known only modulo 8... Sloppy wording on my part, now that I think of it, but you get the idea: the bottom three bits of the packet size are not visible. (With AES this will rise to four, since it uses 16-byte blocks.) Henry Spencer henry@xxxxxxxxxxxxx Linux-crypto: cryptography in and on the Linux system Archive: http://mail.nl.linux.org/linux-crypto/