[Cryptography] open questions in secure protocol design?

Tony Arcieri bascule at gmail.com
Fri May 29 20:16:55 EDT 2015


On Fri, May 29, 2015 at 5:08 PM, Tony Arcieri <bascule at gmail.com> wrote:

>    PGP to 2.6.
>>
>
> Oh god... no, strongly disagree.
>

An extended comment on this:

After the RSA patents expired (in 2000 nonetheless), there was little
reason to include ElGamal or DSA support, especially for the generation of
new keys. I get the backwards compatibility argument, but that's the kind
of thing that should've been phased out 10 years ago. Yet here it is
continuing to junk up the UI in 2015 and contribute to the Johnny Can't
Encrypt problem.

The idea of "One True Ciphersuite" complicates the elimination of outmoded
ciphers that should no longer be supported.

-- 
Tony Arcieri
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20150529/833ab025/attachment.html>


More information about the cryptography mailing list