ietf-dkim
[Top] [All Lists]

Re: [ietf-dkim] New Issue: 512 too short?

2006-03-16 12:40:06

On Mar 16, 2006, at 11:25 AM, Paul Hoffman wrote:

At 11:11 AM -0800 3/16/06, Michael Thomas wrote:
Which leads us back to the original question, I guess. I'm fairly
certain that nobody's going to spend any MIPS-years to factor
mtcc.com's public key.

... thousands of MIPS-years for a 512-bit key ...

http://www.wisdom.weizmann.ac.il/~tromer/papers/twirl.pdf

When the time and resources are minimal, such as 10 minutes and $10K, any message signed using a 512 bit keys MUST NOT be considered signed.

This was referenced in the draft:
http://www.sonic.net/~dougotis/id/draft-otis-mass-reputation-03.html

-Doug
_______________________________________________
NOTE WELL: This list operates according to http://mipassoc.org/dkim/ietf-list-rules.html