[17957] in cryptography@c2.net mail archive
draft paper: "Deploying a New Hash Algorithm"
daemon@ATHENA.MIT.EDU (Steven M. Bellovin)
Thu Jul 21 10:41:10 2005
X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
From: "Steven M. Bellovin" <smb@cs.columbia.edu>
To: cryptography@metzdowd.com
Date: Thu, 21 Jul 2005 10:11:11 -0400
Eric Rescorla and I have written a paper "Deploying a New Hash Algorithm".
A draft is available at http://www.cs.columbia.edu/~smb/papers/new-hash.ps
and http://www.cs.columbia.edu/~smb/papers/new-hash.pdf .
Here's the abstract:
As a result of recent discoveries, the strength of hash
functions such as MD5 and SHA-1 have been called into
question. Regardless of whether or not it is necessary to
move away from those now, it is clear that it will be
necessary to do so in the not-too-distant future. This
poses a number of challenges, especially for certificate-based
protocols. We analyze S/MIME, TLS, and IPsec. All three
require protocol or implementation changes. We explain
the necessary changes, show how the conversion can be done,
and list what measures should be taken immediately.
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com