Re: [TLS] Proposed text for IDEA/DES document
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [TLS] Proposed text for IDEA/DES document



Len Sassaman wrote:
> 
> On Tue, 5 Feb 2008 Pasi.Eronen at nokia.com wrote:
> 
> >    IDEA has a 128-bit key, and thus is not vulnerable to exhaustive
> >    key search. However, IDEA has not seen widespread use, 
> >    and has not
> 
> IDEA has been widely used, particularly in disk and email 
> encryption programs.

I stand corrected -- maybe that could be rephrased to "IDEA cipher
suites for TLS have not seen widespread use"?

> >    received as extensive cryptographic analysis as AES and 
> other more
> 
> IDEA has received a much better "test of time" than AES, and many
> attempts at attacking IDEA have taken place over the last few
> decades.
> 
> IDEA's problem is its patent, nothing more.

In earlier discussions, some folks brought up the issue of rarely used
code. Even if IDEA as algorithm is fine, it's not necessarily a good
idea to include code in TLS libraries that is basically never used
(and thus might contain undetected bugs, impacting potentially both
security and interoperability).

> (If you're going to claim otherwise, I think you need to provide
> citations for both of those, or else you'll find a lot of
> disagreement.)

Yes, I agree that we need citations and/or better arguments.

Best regards,
Pasi
_______________________________________________
TLS mailing list
TLS at ietf.org
http://www.ietf.org/mailman/listinfo/tls



Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.