Re: A Paranoid Encryption Mode

From: Kenneth Almquist (ka_at_sorry.no.email)
Date: 01/06/04


Date: 5 Jan 2004 19:20:34 -0500

John Savard wrote:
> On 4 Jan 2004 20:17:06 -0500, ka@sorry.no.email (Kenneth Almquist)
> wrote, in part:

>> The second possibility--making the session key depend in part on
>> the message body--is equivalent to changing making the session
>> key depend only on the header, and using a different encryption
>> algorithm.
>
> You are quite correct. After all, what I am doing is taking the
> header, and using it as input to an encryption operation performed on
> the message as a whole.
>
> But different encryption algorithms aren't equivalent in security.

Yes, but saying that two algorithms aren't equivalent in security
doesn't tell us *which* of the two algorithms is more secure. In
the article which began this thread, you posted a fairly complex
design. However, you either failed to explain why one might choose
your proposal over a simple design, or else you did explain but I
failed to understand the explanation.
                                Kenneth Almquist



Relevant Pages

  • Re: Encrypted network communication
    ... Bob) communicate over an insecure channel. ... This type of encryption uses a single shared, ... Secret-key encryption algorithms use a single secret key to encrypt and ... unauthorized users and a public key that can be made public to anyone. ...
    (microsoft.public.dotnet.languages.csharp)
  • Re: House on Fire... Do You Rescue the Computer?
    ... Long keys are hard to remember. ... Although I've tested it to make sure it works properly, mozy for me, is a $5/month worst case insurance program. ... His point was existing algorithms are useless, because GovCo can setup software or hardware solutions to decrypt existing known algorithms. ... My point was if encryption was not already your primary game, don't bother because it'll be weaker than what's already existing now anyway. ...
    (sci.electronics.design)
  • Vulnerability in Crypt::CBC Perl module, versions <= 2.16
    ... block of plaintext prior to encryption. ... In order for ciphertext encrypted by Crypt::CBC to be decrypted, ... The older, deprecated, header type is known as the "RandomIV" ... Other>8-byte cipher algorithms will be similarly affected. ...
    (Bugtraq)
  • Re: FileCopy overwrites the existing file
    ... already not so sure about reliability of encryption that you use... ... That how algorithms were broken in early ages of cryptography. ... No matter how you look at it, large target data set will always remain ... that symmetric algorithms that are perfectly safe for encrypting some ...
    (microsoft.public.win32.programmer.kernel)
  • Re: Use of Microsoft Enhanced CSP in custom bulit applications
    ... Usually algorithms with long keys are used for key ... exchange only, while more efficient algorithms like Diffie-Hellman. ... Peter Guttmann's Encryption and Security tutorial ... >>> exchanges files with our clients over the Internet. ...
    (microsoft.public.security)

Quantcast