I found some typos in the design document: - page 1, last paragraph, typo - s/the should all/they should all/ - page 3, missing fullstop in 2.3.2 - typo in 2.3.3 - s/performance of intermittent/performance or intermittent/ - deeper indenting in 2.5 - 3.1.1 wrong indenting - 3.4 wrong indenting - 5.2 missing space in "online.For" - s/ZIO_CRYPT_INERIT/ZIO_CRYPT_INHERIT/ - s/mater of policy/matter of policy/ and one question - I''m probably missing some background - why is AES CBC mode linked to HMAC-SHA256? I understand that SHA-1 is not enough now but why it is limited to HMAC-SHA when CCM not? Jan. -- Jan Pechanec