ietf-openpgp
[Top] [All Lists]

Re: [openpgp] 4880bis: Update S2K

2015-04-10 14:57:31
On Fri, 10 Apr 2015, Werner Koch wrote:

 b) Symmetric-Key Encrypted Session Key Packets.  I don't know how often
    this is used.  I assume that in most use cases the passphrase is
    taken from external key management system and thus we can expect
    that it has full entropy and the KDF does not add to the security.

I have used gpg -c to password-encrypt data with a human-generated (i.e.,
not-great) password fairly recently, as a single anecdote.

-Ben

_______________________________________________
openpgp mailing list
openpgp(_at_)ietf(_dot_)org
https://www.ietf.org/mailman/listinfo/openpgp