Re: linux kernel loopback encryption

New Message Reply About this list Date view Thread view Subject view Author view

Anonymous (nobody@replay.com)
Fri, 17 Jul 1998 00:53:01 +0200


>>Twofish is a well-designed, conservative cipher, but it's young enough
>>that a break is still a big risk. Therefore, I'd reccomend using a
>>more-analyzed cipher like CAST-128 for now, or at least something which
>>can't be less secure than it (i.e., use CAST-OFB on zeroes to generate
>>from the XORed-together keys a CAST key and a Twofish key, then use
>>Twofish-over-CAST for encryption).
>
>While I agree that Twofish is new,

Isn't that kind of going out on a limb? :)

>I give a big yuk to CAST-128. Blowfish is basically the same, but with
>key dependent S-boxes.

OK...just saying that, if anyone feels a need to use Twofish at this
point, combine it with something old; CAST just happened to be the first
moderately old cipher that popped to mind.

>If you want to be conservative, use Triple-DES.

In some applications, there's still a big speed issue with that. I have no
idea about CAST's speed, but, if my memory serves me right,
Twofish-over-Blowfish would be 2-3 times faster than 3DES.

>
>Bruce
>**********************************************************************
>Bruce Schneier, President, Counterpane Systems Phone: 612-823-1098
>101 E Minnehaha Parkway, Minneapolis, MN 55419 Fax: 612-823-1590
> Free crypto newsletter. See: http://www.counterpane.com


New Message Reply About this list Date view Thread view Subject view Author view

 
All trademarks and copyrights are the property of their respective owners.

Other Directory Sites: SeekWonder | Directory Owners Forum

The following archive was created by hippie-mail 7.98617-22 on Fri Aug 21 1998 - 17:20:29 ADT