1996-06-22 - Re: Win95 Blowfish Implementation

Header Data

From: Bill Stewart <stewarts@ix.netcom.com>
To: ogren@cris.com
Message Hash: 2d5e507633adb48f1d71712791f5d85727e660140f217543cd3f7d931792d3b7
Message ID: <199606220824.BAA26724@toad.com>
Reply To: N/A
UTC Datetime: 1996-06-22 13:47:22 UTC
Raw Date: Sat, 22 Jun 1996 21:47:22 +0800

Raw message

From: Bill Stewart <stewarts@ix.netcom.com>
Date: Sat, 22 Jun 1996 21:47:22 +0800
To: ogren@cris.com
Subject: Re: Win95 Blowfish Implementation
Message-ID: <199606220824.BAA26724@toad.com>
MIME-Version: 1.0
Content-Type: text/plain


>So correct me if any of the following statements are incorrect:
>1. Blowfish is not patented and can be used without royalty.

According to Schneier's book (which should be authoritative,
since it's his algorithm), the algorithm is unpatented
and the C code in the back of the book is public domain.

>2. SHA can be used without royalty.
Yup.  Use SHA-1 rather than the original SHA, though; the NSA
"updated" it in ways that do appear to strengthen it.

>3. MD5 can be used without royalty if the RSAREF library is used, 
>and if the proper credit is given to RSA.
>Also, can the MD5 algorithm be used outside the RSAREF library?  In 
>other words, can I rewrite the code to take in effect MFC classes?

Yeah.  I think there's even an RFC that comments on it.

#				Thanks;  Bill
# Bill Stewart +1-415-442-2215 stewarts@ix.netcom.com
# http://www.idiom.com/~wcs
#				Dispel Authority!






Thread