ietf-openpgp
[Top] [All Lists]

Re: HAVAL - But which variant (and what OID?)

1998-03-18 17:28:21
I am not very familiar with HAVAL.  For consistency with our other hash
functions, it might be reasonable to choose a hash size of 160 bits,
like SHA and RIPEMD.  On the other hand, there is a need for larger
hashes to support larger DSA keys.  I don't know if HAVAL is the best
choice for that.

I can't find an OID assignment for HAVAL.  Peter Gutmann has a long list
of known security related OIDs in his dumpasn1.cfg file, but it does not
list HAVAL.  You might direct email to the author and ask if he knows
of an OID assignment.  I suspect we would need a family of OIDs, one for
each length/passes combination.

There is probably no point in defining new hash algorithm identifiers in
the spec unless we are able to define an OID for them.  Both values are
needed for an implementation.

Hal

<Prev in Thread] Current Thread [Next in Thread>