[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Incorporation of AES into IPSec



aes will have speed and key size scalability over 3des. 3 key 3des provides
168-bits of symmetric privacy. aes will provide between 128-256-bits, but with a
considerable speed advantage. both are extremely strong, but it doesn't really
matter given that a 1,024-bit diffie-hellman is often used to negotiate the
keys. 1,024-bit diffie-hellman or rsa is the equivalent of circa 80-bits of
symmetric. i will email you a paper separately. cheers - john






Mark Shuttleworth <marks@thawte.com> on 06.12.1999 07:06:38

To:   ipsec@lists.tislabs.com
cc:    (bcc: John Harleman/Certicom)
Subject:  Re: Incorporation of AES into IPSec




Hi all

Will AES's primary advantage over 3DES be speed? I know that DES is now
considered weak... but that's because if its keyspace of 56 bits. Is
3DES considered plenty strong but slow? If you were wanting to protect
data for 50 years, would 3DES be good enough?

--
Mark Shuttleworth
Thawte