Re: A twist on OTP for an outstandingly secure channel?
- From: "John E. Hadstate" <jh113355@xxxxxxxxxxx>
- Date: Tue, 9 Jan 2007 06:00:59 -0500
"Jean-François Michaud" <cometaj@xxxxxxxxxxx> wrote in
message
news:1168208626.673690.99840@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
John E. Hadstate wrote:
Does this sound similar to what you're trying to achieve?
Very similar indeed! I'm trying to clarify the idea by
using the
perfect case of the OTP. I'm not so much concerned
wheather and OTP is
deemed unbreakable or not; it simply offers a good
platform for
thinking about the concepts involved.
Here's the problem with this discussion: you can not improve
the security of a perfectly random OTP. Once you invoke the
random OTP for a stream cipher, you might as well have
invoked God. If the random OTP is used for encryption,
every decryption is equally likely to be the original
plaintext. There is very little more to say (except for
techniques for encrypting very short plaintexts, which was
mentioned in another part of this thread).
Now, if your OTP is based on a PRNG, it's a whole different
ballgame, and there is then some room for discussion. I
actually proposed this idea in sci.crypt twice. The first
time, it was roundly ignored (and after re-reading it, I can
see why). The second time, someone was good enough to
actually analyze the effect of pseudo-randomly dispersing
plaintext in a background of pseudo-random bits. As I
recall, it turned out that if you allow a bandwidth
expansion of 2:1, you only add a bit or two to the effective
key size. All things considered, there are undoubtedly more
efficient and effective ways to improve the security of a
PRNG-based stream cipher.
.
- Follow-Ups:
- Re: A twist on OTP for an outstandingly secure channel?
- From: Jean-François Michaud
- Re: A twist on OTP for an outstandingly secure channel?
- References:
- A twist on OTP for an outstandingly secure channel?
- From: Jean-François Michaud
- Re: A twist on OTP for an outstandingly secure channel?
- From: rossum
- Re: A twist on OTP for an outstandingly secure channel?
- From: rossum
- Re: A twist on OTP for an outstandingly secure channel?
- From: Jean-François Michaud
- Re: A twist on OTP for an outstandingly secure channel?
- From: John E. Hadstate
- Re: A twist on OTP for an outstandingly secure channel?
- From: Jean-François Michaud
- A twist on OTP for an outstandingly secure channel?
- Prev by Date: Re: ARC4 as a hash function
- Next by Date: how can we born prime !
- Previous by thread: Re: A twist on OTP for an outstandingly secure channel?
- Next by thread: Re: A twist on OTP for an outstandingly secure channel?
- Index(es):
Relevant Pages
|