[pubcookie-dev] Dropping des in favour of aes?

Jim Fox fox at washington.edu
Tue Oct 19 11:01:48 PDT 2004



I think it would be quite easy to convert pubcookie to use
openssl's EVP wrapper library.  Then switching between
various ciphers, AES, DES, blowfish, etc., would be very easy.

Jim


On Sun, 17 Oct 2004, Leif Johansson wrote:

> Date: Sun, 17 Oct 2004 20:38:15 +0200
> From: Leif Johansson <leifj at it.su.se>
> To: Nathan Dors <dors at cac.washington.edu>
> Cc: Pubcookie Developers <pubcookie-dev at u.washington.edu>
> Subject: Re: [pubcookie-dev] Dropping des in favour of aes?
> 
> Nathan Dors wrote:
>> 
>> I don't know if anyone has looked at the security code to determine how 
>> difficult this change would be and what impact it would have on 
>> deployments - maybe not much.
>> 
>> But the proverb "if it ain't broke, don't fix it" may explain the general 
>> spirit keeping things like this the same. Is there no Swedish equivalent?
>> 
>
> Sure but one could argue that des has been broken a long time now.
>
> 	leifj
> _______________________________________________
> pubcookie-dev mailing list
> pubcookie-dev at u.washington.edu
> http://mailman.u.washington.edu/mailman/listinfo/pubcookie-dev
>


More information about the pubcookie-dev mailing list