[Cryptography] Zoom publishes draft cryptographic design for end-to-end encryption

Peter Gutmann pgut001 at cs.auckland.ac.nz
Sun Jul 5 21:27:30 EDT 2020


Florian Weimer <fw at deneb.enyo.de> writes:
>* Peter Gutmann:
>> In practice virtually everyone sets e = F4, which is fine.
>
>Why is choosing a fixed parameter fine in this context, and a no-no for DH
>parameters?  That's the part I don't understand.

The exponent/generator doesn't matter, it's n/p that should be different each
time, which it is for RSA/DSA/etc but not for DH (at least as used in IPsec
and the IPsec cargo-cult derivatives).

Peter.


More information about the cryptography mailing list