[1150] in Kerberos_V5_Development

home help back first fref pref prev next nref lref last post

des-3 & SHA

daemon@ATHENA.MIT.EDU (Richard Basch)
Fri May 10 02:59:38 1996

Date: Fri, 10 May 1996 02:59:07 -0400
To: krbdev@MIT.EDU
From: "Richard Basch" <basch@lehman.com>

I have replaced DES3-MD5 with DES3-SHA in my own tree and will check it
in shortly, after a few tests...

However, I do have a question:
What should the confounder length be for the crypto checksum?
8 bytes or 24 bytes?

The answer really depends on the CBC chaining effects that are obtained
with larger confounders...  (Currently, my tree has it set to eight
bytes.)

With that exception, I think I have completed this integration...

Richard Basch                   
Sr. Developer/Analyst           URL: http://web.mit.edu/basch/www/home.html
Lehman Brothers, Inc.           Email: basch@lehman.com, basch@mit.edu
101 Hudson St., 33rd Floor      Fax:   +1-201-524-5828
Jersey City, NJ 07302-3988      Voice: +1-201-524-5049


home help back first fref pref prev next nref lref last post