[19433] in bugtraq
Re: Nortel CES (3DES version) offers false sense of securitywhen
daemon@ATHENA.MIT.EDU (Valdis Kletnieks)
Wed Feb 28 17:05:27 2001
Mime-Version: 1.0
Content-Type: multipart/signed; boundary="==_Exmh_-1517093167P";
micalg=pgp-sha1; protocol="application/pgp-signature"
Content-Transfer-Encoding: 7bit
Message-ID: <200102281632.f1SGWve24216@foo-bar-baz.cc.vt.edu>
Date: Wed, 28 Feb 2001 11:32:57 -0500
Reply-To: Valdis.Kletnieks@VT.EDU
From: Valdis Kletnieks <Valdis.Kletnieks@VT.EDU>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To: Your message of "Wed, 28 Feb 2001 09:36:27 EST."
<200102281436.f1SEaRe22681@foo-bar-baz.cc.vt.edu>
--==_Exmh_-1517093167P
Content-Type: text/plain; charset=us-ascii
On Wed, 28 Feb 2001 09:36:27 EST, Valdis Kletnieks <Valdis.Kletnieks@VT.EDU> said:
> I seem to remember Schneier's "Applied Cryptography" discussing this. In any
> case, the reason that triple-DES is limited to an *effective* 112 bits
> of key is that DES is a "group". To sum up multiple pages of math, this
Moral. Always proofread it *again*. The math follows from the fact
that DES is *NOT* a group. I've already had 2 people notice I missed
the '*NOT*'. ;(
/Valdis (who needs to double-check his caffeine content before hitting send)
--==_Exmh_-1517093167P
Content-Type: application/pgp-signature
-----BEGIN PGP SIGNATURE-----
Version: PGP 6.5.8
Comment: Exmh version 2.2 06/16/2000
iQA/AwUBOp0oOXAt5Vm009ewEQIipACg3k6OgLWPZ3eh3m1+wYlz4k5XezEAmgM7
NygsYdYSIP4jLWCvaBOVGGzb
=66Nq
-----END PGP SIGNATURE-----
--==_Exmh_-1517093167P--