From: “Perry E. Metzger” <pmetzger@lehman.com>
To: cypherpunks@toad.com
Message Hash: 61298b5f08a3dce0fb47349d2a858da072c45749bb3df7638957b397d5916d93
Message ID: <9309282309.AA15986@snark.lehman.com>
Reply To: <9309282044.AA26047@ellisun.sw.stratus.com>
UTC Datetime: 1993-09-28 23:11:35 UTC
Raw Date: Tue, 28 Sep 93 16:11:35 PDT
From: "Perry E. Metzger" <pmetzger@lehman.com>
Date: Tue, 28 Sep 93 16:11:35 PDT
To: cypherpunks@toad.com
Subject: Re: Phil Zimmerman on 'The Death of DES'
In-Reply-To: <9309282044.AA26047@ellisun.sw.stratus.com>
Message-ID: <9309282309.AA15986@snark.lehman.com>
MIME-Version: 1.0
Content-Type: text/plain
I personally favor triple DES + IDEA. The notion is that if triple DES
is weak maybe IDEA isn't, and vice versa -- you are no weaker than the
strongest of the two systems.
Perry
Carl Ellison says:
> Single DES is weak, for a known plaintext attack. I think we knew that.
> We didn't know how weak.
>
> We can extrapolate to an NSA machine with 1 second scan of all keys,
> perhaps.
>
> So --
>
> 1. use triple DES
>
> 2. before using DES, XOR with a stream from a decent PRNG (destroying
> the known plaintext)
>
> 3. in between DES operations, mix bytes up as with tran (posted on
> sci.crypt occasionally, avbl from me by mail or on ripem.msu.edu)
> -- spreading bytes out within a huge block, further hiding any
> known text
>
> - Carl
Return to September 1993
Return to ““Perry E. Metzger” <pmetzger@lehman.com>”