ietf
[Top] [All Lists]

Re: [Gen-art] Gen-ART LC Review of draft-ietf-nsis-nslp-auth-06

2010-09-09 09:56:37
Will any implementations be impacted?  If not, we should ask the
Security ADs for their best suggestion.

Russ

On 9/8/2010 7:24 PM, Roland Bless wrote:
-- section 4.1.1, 2nd paragraph:

Is HMAC-MD5 still a reasonable choice for a single mandatory-to-implement 
algorithm these days?
Good question. I thought that HMACs are not so strongly
affected by the discovered hash algorithm weaknesses w.r.t. collision
attacks. I could change this to HMAC-SHA-256 though. Any
other suggestions?

_______________________________________________
Ietf mailing list
Ietf(_at_)ietf(_dot_)org
https://www.ietf.org/mailman/listinfo/ietf