ietf-openpgp
[Top] [All Lists]

Re: PGP Keyserver Synchronization Protocol

1999-06-23 08:35:49
In 
<19990623095541(_dot_)F30893(_at_)frodo(_dot_)isil(_dot_)d(_dot_)shuttle(_dot_)de>,
 on 06/23/99 
   at 09:55 AM, Werner Koch <wk(_at_)isil(_dot_)d(_dot_)shuttle(_dot_)de> said:

Tony Mione <mione(_at_)hardees(_dot_)Rutgers(_dot_)EDU> writes:

Any reason for MD5? I understand the SHA-1 is longer. However, it is
thought to be a stronger hash the MD5 at this time. 

Yes it is longer and therefore increasing the amount of bytes to
exchange.  I can't see a reason for a cryptographic strong hash algorithm
here - it is merely used as a checksum.  MD5 is good enough for this.

Actually MD5 seems too large for this but I don't know a good replacement
that would be smaller than MD5 but still large enough to be collision
resistant.


-- 
---------------------------------------------------------------
William H. Geiger III  http://www.openpgp.net
Geiger Consulting    Cooking With Warp 4.0

Author of E-Secure - PGP Front End for MR/2 Ice
PGP & MR/2 the only way for secure e-mail.
OS/2 PGP 5.0 at: http://www.openpgp.net/pgp.html
Talk About PGP on IRC EFNet Channel: #pgp Nick: whgiii

Hi Jeff!! :)
---------------------------------------------------------------