RE: Data integrity check in CIPE - Please explain me the necessit yor benefit of a larger checksum.

Тарасов Андрей Андре евич <[email protected]>
Newsgroups gmane.comp.encryption.cipe
Message-ID <117DF1A7B1C6D411BEE50000212B25B32540@EXCH>
> 2. We need HMAC for a lighter (less cpu-demanding) message 
> digest of say 64
> bits.
> Using SHA-1 and use only a small part of its output is 
> overkill, a waste of
> CPU-time and would make CIPE unusable on slow CPUs and/or fast media.
> There must be a (cpu-wise) lighter (faster) solution 
> available which also
> provides the required protection. We need this protection for 
> a maximum of
> the dynamic key's life time. Any ideas?
> 
IMHO:
Don't think that slowing down throughput less than 2 times is a real issue.
Although if using SHA-1 makes it more than 2 times slower, we may use, for
example, another blowfish key (generated and distributed exactly under the
same conditions as the main key), then reduce it to 32, 64, or even 1 bit
via xor operation. 

As far as I know, if F(X) is strong enough, then hash H(X) made of F() as
xoring parts of F()'s output is strong enough.

Correct me or ignore me if I'm wrong :)

--
Message sent by the [email protected] mailing list.
Unsubscribe: mail [email protected], "unsubscribe cipe-l" in body
Other commands available with "help" in body to the same address.
CIPE info and list archive: <URL:http://sites.inka.de/~bigred/devel/cipe.html>
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.