On Tue, 11 Aug 2015 15:21, pgut001(_at_)cs(_dot_)auckland(_dot_)ac(_dot_)nz
said:
What's the clear need for -512? By which I mean a demonstrated practical need
for a hash size of 64 bytes, not a hypothesised need given an imaginary
attack. I can see a need for SHA-256 (to replace SHA-1), but for something
like SHA3-512 all I can see are downsides (compared to SHA2-256).
One advantage of SHA-512 (SHA2) is that it faster than SHA-256 on modern
machines. Thus SHA-512 truncated to 256 might be an option. This would
eventually allow to write a small application which uses SHA-512 as its
only hash algorithm.
Salam-Shalom,
Werner
--
Die Gedanken sind frei. Ausnahmen regelt ein Bundesgesetz.
_______________________________________________
openpgp mailing list
openpgp(_at_)ietf(_dot_)org
https://www.ietf.org/mailman/listinfo/openpgp