Re: ASN.1 OID for TIGER/192

2002-09-30 10:19:56

David Shaw <dshaw(_at_)jabberwocky(_dot_)com> writes:

I'm not for or against using TIGER in OpenPGP, but my feeling is that
if we are going to include TIGER, then we should do it intentionally,
with all due care taken.

At some level, too many ciphers can spoil the security-system...  Not
that I'm saying TIGER is insecure, but at some level you need to limit
the posibilities for real-world interoperation.

Also note that reserving a number for TIGER but _not_ putting it into
the standard is different than actually calling TIGER a required cipher.



       Derek Atkins
       Computer and Internet Security Consultant

