[43137] in Cypherpunks
Re: Photuris Primality verification needed
daemon@ATHENA.MIT.EDU (Adam Shostack)
Wed Nov 8 23:23:16 1995
From: Adam Shostack <adam@homeport.org>
To: karn@qualcomm.com (Phil Karn)
Date: Wed, 8 Nov 1995 23:18:09 -0500 (EST)
Cc: bal@martigny.ai.mit.edu, cypherpunks@toad.com, ipsec-dev@eit.COM
In-Reply-To: <199511090337.TAA04357@servo.qualcomm.com> from "Phil Karn" at Nov 8, 95 07:37:23 pm
You might want to offer a number of strong moduli in the 1024-1500 bit
range. Having multiple strong moduli in the same size (speed) range
reduces the value of going after a particular one. We all know how
security software tends to stay deployed longer than it really should.
Adam
Phil Karn wrote:
| Thanks. That's pretty much what we are doing -- requiring a particular
| 1024-bit modulus but recommending several others as options. There's a
| 2048 bit optional modulus and may even be a 4096-bit option if I can
| find one in reasonable time. There was going to be a 512-bit optional
| modulus but the group has reacted so strongly to it that I'm willing to
| withdraw it.
--
"It is seldom that liberty of any kind is lost all at once."
-Hume