[7966] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

The "SHA-2" algorithms, plus AES OIDs

daemon@ATHENA.MIT.EDU (Tim Polk)
Fri Oct 13 21:53:01 2000

Message-Id: <4.2.0.58.20001012152749.00af4dc0@email.nist.gov>
Date: Thu, 12 Oct 2000 15:36:49 -0400
To: cryptography@c2.net
From: Tim Polk <wpolk@nist.gov>
Mime-Version: 1.0
Content-Type: text/plain; charset="us-ascii"; format=flowed


FYI,

NIST has just posted a white paper that specifies hashing algorithms 
(SHA-256, SHA-384, and SHA-512) that are intended to provide security 
similar to that of the three AES key sizes. Information can be found at 
<http://www.nist.gov/sha/>.

These algorithms "will be proposed in a draft Federal Information 
Processing Standard (FIPS) in 2001. These algorithms are being made 
available for information purposes prior to the publication of the draft 
FIPS. SHA-256 is a 256-bit hash function that is intended to provide 128 
bits of security against collision attacks, and SHA-512 is a 512-bit hash 
function that is intended to provide 256 bits of security. A 384-bit hash 
may be obtained by truncating the SHA-512 output."

The web site has the NIST contact points.

One more note about AES: http://csrc.nist.gov/csor/algorithms.htm contains 
the object identifiers and ASN.1 type definitions for AES parameters for 
protocols built on ASN.1.  The OIDs for the new hash algorithms will follow 
next week.

Thanks,

Tim Polk


home help back first fref pref prev next nref lref last post