Re: [cryptography] Should Sha-1 be phased out?

2015-10-20 Thread Joachim Strömbergson
use bcrypt!" we need to shout "kill md5!" over and over again until it reaches into the embedded dungeons. And then SHA-1. And RC4. And DES. -- Med vänlig hälsning, Yours Joachim Strömbergson - Alltid i harmonisk svängning. ==

Re: [cryptography] NIST Randomness Beacon

2013-12-21 Thread Joachim Strömbergson
> various shortwave "numbers stations." > > http://en.wikipedia.org/wiki/Numbers_station Or the NIST Randomness Beacon. Anybody tested it with Dieharder yet - or is it too much of a dead duck anyway to not waste time on it. - -- Med vänlig hälsning, Yours Joachim Strömbergson -

[cryptography] Mixing RdRand with other CPU-based entropy sources?

2013-12-19 Thread Joachim Strömbergson
/dakarand/ [3] http://jytter.blogspot.se/ [4] http://www.chronox.de/ - -- Med vänlig hälsning, Yours Joachim Strömbergson - Alltid i harmonisk svängning. -BEGIN PGP SIGNATURE- Version: GnuPG/MacGPG2 v2.0.22 (Darwin

Re: [cryptography] State of the art in block ciphers?

2013-12-03 Thread Joachim Strömbergson
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Aloha! (Added the list as recipient since I assume not replying to list was a mistake - if not I apologize to SandyH.) Sandy Harris wrote: > Joachim Strömbergson wrote: >> The question is then - what is state of the art in block cipher

[cryptography] State of the art in block ciphers?

2013-11-29 Thread Joachim Strömbergson
hen - what is state of the art in block cipher design? What would be the candidates to complement AES in SSL/TLS? - -- Med vänlig hälsning, Yours Joachim Strömbergson - Alltid i harmonisk svängning. -BEGIN PGP SIGNATURE---

Re: [cryptography] Quality of HAVEGE algorithm for entropy?

2013-11-29 Thread Joachim Strömbergson
2: You should probably reference jytter in your paper, it would be very interesting to see the comparison between them. - -- Med vänlig hälsning, Yours Joachim Strömbergson - Alltid i harmonisk svängning. -BEGIN PGP SIG

Re: [cryptography] Quality of HAVEGE algorithm for entropy?

2013-11-29 Thread Joachim Strömbergson
ents. But it does not measure events _outside_ the CPU. - -- Med vänlig hälsning, Yours Joachim Strömbergson - Alltid i harmonisk svängning. -BEGIN PGP SIGNATURE- Version: GnuPG/MacGPG2 v2.0.22 (Darwin) Comment

Re: [cryptography] Quality of HAVEGE algorithm for entropy?

2013-11-28 Thread Joachim Strömbergson
that the radio was in fact broken and the RSSI always returned the same value. Not good. ;-) - -- Med vänlig hälsning, Yours Joachim Strömbergson - Alltid i harmonisk svängning. -BEGIN PGP SIGNATURE- Version: GnuPG/M

Re: [cryptography] Quality of HAVEGE algorithm for entropy?

2013-11-28 Thread Joachim Strömbergson
roviding whitish noise at kbps rate and then having RdRand from your Haswell CPU generating data at Gbps speed, will the microphone entropy matter? - -- Med vänlig hälsning, Yours Joachim Strömbergson - Alltid i harmonisk svängning. ==

Re: [cryptography] Quality of HAVEGE algorithm for entropy?

2013-11-28 Thread Joachim Strömbergson
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Aloha! coderman wrote: > On Tue, Nov 26, 2013 at 10:09 AM, Joachim Strömbergson > wrote: >> ... I have concerns though on embedded SSL stacks that use Havege >> as entropy source on MCUs such as AVR32 and ARM. ... On an >>

Re: [cryptography] Quality of HAVEGE algorithm for entropy?

2013-11-26 Thread Joachim Strömbergson
nipulate/force the TSC which means that Havege generated predictable values. The estimator happily reported good entropy. On an x86-based server you can use Havege, but use it to feed /dev/random, not as a RNG directly. The same goes for Jytter. - -- Med vänlig hälsning, Yours Joachim Strömbergso

Re: [cryptography] chacha test vectors

2013-11-04 Thread Joachim Strömbergson
urs Joachim Strömbergson - Alltid i harmonisk svängning. -BEGIN PGP SIGNATURE- Version: GnuPG/MacGPG2 v2.0.22 (Darwin) Comment: GPGTools - http://gpgtools.org Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.

Re: [cryptography] [zfs] [Review] 4185 New hash algorithm support

2013-10-23 Thread Joachim Strömbergson
nt performance gains compared to MD5 for long messages. Besides that the fact that you _never_ shall use MD5 for new designs and unless forced to. A reduced round even less so. -- Med vänlig hälsning, Yours Joachim Strömbergson - Alltid i harmo

Re: [cryptography] [zfs] [Review] 4185 New hash algorithm support

2013-10-22 Thread Joachim Strömbergson
known * small 64 bit > output, which means that collisions will happen frequently and need > to be handled I think those are much more relevant arguments. - -- Med vänlig hälsning, Yours Joachim Strömbergson - Al

Re: [cryptography] FreeBSD crypto and security meta

2013-10-22 Thread Joachim Strömbergson
e implementation of the > Fortuna algorithm by Ferguson and Schneier as an upgrade or > alternative to Yarrow. Initially a choice will be presented, and > decisions on the future of the CSPRNG processing algorithms in use > will be made in the future as needs arise. Nice! FreeBSD ftw. ;

Re: [cryptography] [zfs] [Review] 4185 New hash algorithm support

2013-10-21 Thread Joachim Strömbergson
s an IV/salt to make it per instance unique. https://131002.net/siphash/ Designed by DJB and Aumasson, the latter the designer of BLAKE and BLAKE2 which you referred. (Sorry to butt in and if I might have suggested something you already know.) - -- Med vänlig hälsning, Yours Joachim Str

Re: [cryptography] What project would you finance? [WAS: Potential funding for crypto-related projects]

2013-07-02 Thread Joachim Strömbergson
ect, who do you think would benefit the most? > > A BTNS implementation. There aren't any. Actually there is: http://hack.org/mc/projects/btns/ The implementation was sponsored by the .SE-foundation responsible for the Swedish (SE) domain, among other things. - -- Med vänlig hälsning,

[cryptography] Sodium. (Was: Re: NaCl Documentation?)

2013-03-12 Thread Joachim Strömbergson
/announcing-sodium-a-new-cryptographic-library/ https://github.com/jedisct1/libsodium -- Med vänlig hälsning, Yours Joachim Strömbergson - Alltid i harmonisk svängning

Re: [cryptography] Intel RNG

2012-06-19 Thread Joachim Strömbergson
uld allow us to probe that the whole chain works as intended with KATs for the PRNG part. This would still not prove that Intel, when MUXing in data from (1)/(2) into the PRNG actually does something completely different. -- Med vänlig hälsning, Yours Joachim Strömbergson - Alltid i harm

Re: [cryptography] Intel RNG

2012-06-19 Thread Joachim Strömbergson
or, and allows reuse of the module’s AES hardware." -- Med vänlig hälsning, Yours Joachim Strömbergson - Alltid i harmonisk svängning. signature.asc Description: OpenPGP digital signature

Re: [cryptography] Non-governmental exploitation of crypto flaws?

2011-11-28 Thread Joachim Strömbergson
y curious individuals. http://www.darknet.org.uk/2007/01/wep0ff-wireless-wep-key-cracker-tool/ http://wepcrack.sourceforge.net/ -- Med vänlig hälsning, Yours Joachim Strömbergson - Alltid i harmonisk svängning. Kryptoblog -