[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

comments on draft-ietf-ipsec-ciph-cbc-02.txt




The draft does not mention that the RC5 encryption algorithm is patented
(pat.no. 5,724,428).

We feel that a 4-round variant of IDEA can not provide the level of
security that it's key length would suggest. Cryptoanalytic attacks on 
3 and 3.5 - round variants of IDEA has been published. 

The weak key lists are incomplete, as they will probably always be.
The chances of hitting one at random is negligible. What's the point ?

- mj

Markku-Juhani O. Saarinen <mjos@ssh.fi>, SSH Communications Security Ltd