Also, section 9.6.5 advocates MAC-then-encrypt over encrypt-then-MAC - presumably the flaws in this approach have only become apparent since the book was published.
An interesting historical document though.
An interesting historical document though.
A nice concise discussion of Encrypt-then-MAC vs MAC-then-Encrypt can be found here:
http://crypto.stackexchange.com/questions/202/should-we-mac-...