Re: more about HMAC-SHA-1 security question



<osmo.sis@xxxxxxxxx> wrote:
Ideas?

The current thinking is that HMAC-SHA-1 is a good PRF, which means that
for a sufficiently large and randomly chosen k, it should be really,
really hard to distinguish HMAC-SHA-1(k,.) from a random function, even
when you're allowed to see function values at any (say) 10^20 points
you care about and think about it for (say) 10^30 seconds.

--
Kristian Gjøsteen
.