ietf-openpgp
[Top] [All Lists]

AES-128 (was Re: Suggested DER Prefixes)

2003-05-29 11:28:13

At 01:05 PM 5/29/2003 -0400, Jeroen van Gelderen wrote:
The original statement was:

  "In fact, there are those who feel safer with AES at 128 than at 256."

I believe that when rumors of the initial Courtois & Pieprzyk work first made the rounds (Crypto '01?), it was "whispered" that their attack only applied to (or was simply more efficient at?) the 2 larger key sizes, but not to/at 128. The situation
now seems to be much more complicated. See, for example:
        http://www.minrank.org/aes/

-mjm