[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: MD5 vs. SHA-1, Selection Criteria



Phil Karn Jr wrote:
> 
> John,
> 
> I'm all in favor of being conservative when it comes to choosing ciphers.
> My only concern is whether SHA-1 has had the level of intensive study as
> MD5. Would we be merely jumping from the frying pan into the fire? I really
> don't know the answer.
> 
> Phil

I have heard things regarding the MD5-to-SHA-to-SHA1 evolution in 
conversations with cryptographers at NIST and NSA that lead me to believe 
that SHA-1 has been very thoroughly reviewed and is much more robust than 
MD5.  It is unfortunate that this review isn't as complete in the public 
arena.

-John


References: