[Cryptography] open questions in secure protocol design?

Tony Arcieri bascule at gmail.com
Mon May 25 21:48:57 EDT 2015


On Sat, May 23, 2015 at 9:19 AM, ianG <iang at iang.org> wrote:

> Today's thought while reading the WIP/draft from IETF on algorithmic
> agility [0].  Open questions in secure protocol design:
>
> 1.  One True Cipher Suite versus Algorithm Agility?


One interesting anecdote from that RFC was WEP. It was the "one true
ciphersuite" for 802.11 security. Unfortunately WEP was rather broken, so
IEEE rushed the development and deployment of WPA, which was likewise
broken in many ways. As a result of this whole debacle, for over half a
decade most devices were incapable of making secure WiFi connections.

-- 
Tony Arcieri
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20150525/0f0ef68b/attachment.html>


More information about the cryptography mailing list