Design issues - Confusion and Diffusion
Each round has very strong local encryption
Confusion : Substitution.
- done with key-dependent S-boxes, MDS matrices and PHTs
Diffusion : What effect does an input change have on outputs?
- Local: MDS, PHT, but not fully
- Global: essentially done by the rounds and the Non-Feistel shifts