increase nonce size to 32 bytes, required when using SHA384/512 PRFs