Re: New version of rsa-sha2-512 draft posted: no more DSA

[email protected] (Niels Möller)
Newsgroups gmane.ietf.secsh
Message-ID <[email protected]>
Peter Gutmann <[email protected]> writes:

> (I can't see any good reason to have -512, it has little support, it's a pain
> to do on 32-bit CPUs, it's slow, and it offers little to no practical security
> advantage over -256).

My experience is that sha512 actually seems to be a bit faster than
sha256 on 64-bit hardware.

That said, I do agree rsa-sha256 might be a better choice for a new
required or strongly recommended signature algorithm.

Regards,
/Niels

-- 
Niels Möller. PGP-encrypted email is preferred. Keyid C0B98E26.
Internet email is subject to wholesale government surveillance.
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.