Re: The importance of IVs

From: Paul Rubin (//phr.cx_at_NOSPAM.invalid)
Date: 08/29/05


Date: 29 Aug 2005 14:31:51 -0700


"mobius30" <mobius30@hushmail.com> writes:
> >Blowfish wasn't *qualified* for the AES competition; it only had
> >64-bit blocks.
>
> Agreed. It didn't meet the entry requirements. However, what makes an
> algorithm "qualified"?

AES candidates had to have 128 bit blocks.

> Really though, NSA endorsement aside, what makes AES any more secure
> than Blowfish?

For one thing, its block size is larger.

> Just because Blowfish has 64-bit blocks does not make it any less
> secure than AES.

The 64 bit blocksize is in fact a security weakness for some types of
use.

> Is Blowfish the right algorithm for ALL purposes? Absolutely NOT.

Is it the right algorithm for AS MANY purposes as AES? Also no.

Are there specific purposes where AES is better than Blowfish? Yes,
quite a few.

Are there specific purposes where Blowfish is better than AES? I
won't say "absolutely not", but it would take some head scratching to
come up with some.

I'm not trying to slam Blowfish. It was a good contribution back in
the DES era but we've had a lot of progress since then. The new
knowledge lets us do stuff better than we could before. Let's not
throw away that opportunity.



Relevant Pages

  • Re: too much encryption
    ... AES, you see Blowfish gets roughly 64 MB/Sec while AES gets ... presume whatever software you are using is using AES in CBC mode, ... defined as applying the previous ciphertext block to the next plaintext ...
    (comp.os.linux.security)
  • Re: Multiple encryption: again, and again, and again...
    ... >Blowfish key, then try every single AES key, then the second Blowfish ... plaintext/ciphertext pair, encrypt plaintext with all possible AES keys, ... already making of the attacker having time to brute-force AES or Blowfish ...
    (sci.crypt)
  • Re: Welche Festplattenverschlüsselung ist sicherer?
    ... auf Performance dem AES 256 immer überlegen war. ... Zwischen AES und Blowfish gibt es zwar Unterschiede bei der Performace, ... Notebook, da hier die Gefahr des Diebstahls relativ ...
    (de.comp.security.misc)
  • Re: The importance of IVs
    ... I haven't looked into Twofish very much, ... <address the limitations of Blowfish. ... Time for some rhetoric on AES vs. ... <It wasn't the NSA's "stamp of approval" that made Rijndael the AES ...
    (sci.crypt)
  • Re: Determine what encryption was used
    ... tell what type of encryption, AES or Blowfish, was used? ... The .enc file could potentially have included the plaintext string: ...
    (comp.security.misc)