[Cryptography] DH non-prime kills "socat" command security

david davidwong.crypto at gmail.com
Tue Feb 9 11:49:26 EST 2016


On 2/8/16 9:03 PM, Benjamin Kreuter wrote:
> IMO it is better to choose common parameters large enough to resist 
> nation-state attacks, and for everyone to use those parameters. -- Ben
Didn't logjam also taught us that it's not always a good idea to have 
hard-coded parameters (and in the logjam case it was a DH hardcoded param)

David


More information about the cryptography mailing list