Point taken (Was Re: ADVERT: Secure communications)



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

David Wagner wrote:
Peter S. May wrote:
sci.crypt readers: I would like to request, on Robin Carey's behalf,
comment by experienced cryptanalysts on the L15 algorithm.

Not a chance! Why would I spend my time analyzing an algorithm designed
by someone who doesn't seem to understand the most basic tenets of
cryptosystem design and evaluation? What would be the point? How much
are you paying? What do I get out of it?

It's a total waste of time. Based on what I've seen, I would
never entrust important data to Caesarion/Leopard/L15/whatever the
thing-a-ma-jig is called these days.

Schneier's essay on amateur cipher designers makes the point pretty well.

....yeah, I really should have known not to respond to that post. I
don't like discouraging people with a genuine interest just because the
way it's already done is way better, since if anyone had done that with
me I might have run away from the subject. It takes more pragmatism
than some can muster to admit that most of the good work in cryptography
has already been done, most of the rest is the subject of high-budget
research, and what's left to be done has very little to do with the
technology itself but instead with packaging the extant primitives in a
way that isn't flawed and is easy enough for the end user to swallow.
For me, that level of pragmatism came around high school graduation, but
for some it comes later. :-)

Anyway, I wouldn't have bothered if I'd known this were a repeat
offense. Sorry.

PSM
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.2 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFFQm7Qei6R+3iF2vwRAsEEAJ9n+TwcViEPpFPFkqgW1sEAgkTF/gCeJfaV
coEJLU1PsrWs74a2AoT0X08=
=t2y1
-----END PGP SIGNATURE-----
.



Relevant Pages

  • Re: ADVERT: Secure communications
    ... comment by experienced cryptanalysts on the L15 algorithm. ... Not a chance! ... Why would I spend my time analyzing an algorithm designed ... cryptosystem design and evaluation? ...
    (sci.crypt)
  • Re: Converting int to string
    ... >I would bet that if you spent as much time analyzing and refining the ... >design of your program as you did in creating this example, ... If you are writing an application and don't have conv::itoa (or ... faster solution, resorting to writing your own only if you can't find ...
    (microsoft.public.vc.stl)
  • Re: Fix the high cost [Was:] High Cost of Sportplanes
    ... What size is the spar attachment bolt? ... Ok, no offense here, but this isn't about a design, rather, its about a process. ... The point is to collect community input on how to complete each one with the least amount of labor & cost. ... Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org ...
    (rec.aviation.homebuilt)
  • Re: ECB+CTR Mode?
    ... | the cost of an extra block encryption. ... design. ... doesn't involve calling the group troll a troll :-) ... Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org ...
    (sci.crypt)
  • Re: Colors is Firefox
    ... > Becuase in that way i force any site to use my colors, ... > have good color design (in this case i prefer to see the site as ... Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org ...
    (Debian-User)