[1155] in Kerberos_V5_Development

home help back first fref pref prev next nref lref last post

Re: des-3 & SHA

daemon@ATHENA.MIT.EDU (Theodore Y. Ts'o)
Fri May 10 14:56:19 1996

Date: Fri, 10 May 1996 14:54:54 -0400
From: "Theodore Y. Ts'o" <tytso@MIT.EDU>
To: "Richard Basch" <basch@lehman.com>
Cc: Sam Hartman <hartmans@MIT.EDU>, "Richard Basch" <basch@lehman.com>,
        krbdev@MIT.EDU
In-Reply-To: Richard Basch's message of Fri, 10 May 1996 14:19:39 -0400,
	<199605101819.OAA16745@badger.lehman.com>

The basic idea is that triple DES support is *not* going to be supported
in any shape or form for Beta 6, and that people are going to be
explicitly warned that the algorithms and checksum formats may change,
since it is still under development.

All of the changes which Richard is doing only really affect 3-DES.  The
PRNG for single-DES should not have changed in any real way; our
discussions were about how to do the PRNG for 3-DES so that it's really
(at least) 112 bits strong.

						- Ted

home help back first fref pref prev next nref lref last post