RFC Errata
RFC 8702, "Use of the SHAKE One-Way Hash Functions in the Cryptographic Message Syntax (CMS)", January 2020
Source of RFC: lamps (sec)
Errata ID: 7288
Status: Reported
Type: Technical
Publication Format(s) : TEXT, PDF, HTML
Reported By: David Ireland
Date Reported: 2022-12-26
Section 3.4 says:
If absent, the SHAKE256 output length used in KMAC is 32 or 64 bytes, respectively,
It should say:
If absent, the SHAKE128 or SHAKE256 output length used in KMAC is 32 or 64 bytes, respectively,
Notes:
The adverb 'Respectively' requires two parallel structures. SHAKE128=>32, SHAKE256=>64.